CyberRota Analysis
This is a high severity vulnerability with a CVSS score of 7.3. See the original NVD description below for full technical details.
CVE
CVE-2025-32355
Severity
HIGH
CVSS
7.3
EPSS
1.25%
Original NVD Description
Rocket TRUfusion Enterprise through 7.10.4.0 uses a reverse proxy to handle incoming connections. However, the proxy is misconfigured in a way that allows specifying absolute URLs in the HTTP request line, causing the proxy to load the given resource.
Related CVEs
Other vulnerabilities affecting the same vendor(s)