Back to search
CVE-2025-0659
Published: Jan 28, 2025
Modified: Jan 28, 2025
PUBLISHED
Description
A path traversal vulnerability exists in the Rockwell Automation DataEdge Platform DataMosaix Private Cloud. By specifying the character sequence in the body of the vulnerable endpoint, it is possible to overwrite files outside of the intended directory. A threat actor with admin privileges could leverage this vulnerability to overwrite reports including user projects.
| Vendor | Product | Versions |
|---|---|---|
Rockwell Automation | DataEdgePlatform DataMosaix™ Private Cloud | affected <=7.11 |
Weaknesses (CWE)
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now