Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-0659

Опубликовано: 28 янв. 2025
Источник: nvd
EPSS Низкий

Описание

A path traversal vulnerability exists in the Rockwell Automation DataEdge Platform DataMosaix Private Cloud. By specifying the character sequence in the body of the vulnerable endpoint, it is possible to overwrite files outside of the intended directory. A threat actor with admin privileges could leverage this vulnerability to overwrite reports including user projects.

EPSS

Процентиль: 34%
0.00139
Низкий

Дефекты

CWE-200

Связанные уязвимости

github
около 1 года назад

A path traversal vulnerability exists in the Rockwell Automation DataEdge Platform DataMosaix Private Cloud. By specifying the character sequence in the body of the vulnerable endpoint, it is possible to overwrite files outside of the intended directory. A threat actor with admin privileges could leverage this vulnerability to overwrite reports including user projects.

EPSS

Процентиль: 34%
0.00139
Низкий

Дефекты

CWE-200