CVE Database
/

CVE-2025-0659

Back to search

CVE-2025-0659

Published: Jan 28, 2025

Modified: Jan 28, 2025

PUBLISHED

Description

A path traversal vulnerability exists in the Rockwell Automation DataEdge Platform DataMosaix Private Cloud. By specifying the character sequence in the body of the vulnerable endpoint, it is possible to overwrite files outside of the intended directory. A threat actor with admin privileges could leverage this vulnerability to overwrite reports including user projects.

VendorProductVersions

Rockwell Automation

DataEdgePlatform DataMosaix™ Private Cloud

affected
<=7.11

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now