CVE-2025-0659
Severity CVSS v4.0:
HIGH
Type:
CWE-200
Information Leak / Disclosure
Publication date:
28/01/2025
Last modified:
28/01/2025
Description
A path<br />
traversal vulnerability exists in the Rockwell Automation DataEdge Platform DataMosaix Private Cloud. By specifying the character<br />
sequence in the body of the vulnerable endpoint, it is possible to overwrite<br />
files outside of the intended directory. A threat actor with admin privileges could<br />
leverage this vulnerability to overwrite reports including user projects.
Impact
Base Score 4.0
7.00
Severity 4.0
HIGH



