Path Traversal Vulnerability in Rockwell Automation DataEdge Platform
CVE-2025-0659
Key Information:
- Vendor
Rockwell Automation
- Vendor
- CVE Published:
- 28 January 2025
What is CVE-2025-0659?
A path traversal vulnerability exists in the Rockwell Automation DataEdge Platform DataMosaix Private Cloud, enabling threat actors with admin privileges to exploit the vulnerable endpoint. By providing a specific character sequence in the request body, these actors can manipulate the file system, leading to the potential overwriting of sensitive files, including user reports and projects, beyond the intended directory. This vulnerability poses risks for data integrity and security, necessitating immediate attention from administrators.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
DataEdgePlatform DataMosaix™ Private Cloud <=7.11
References
CVSS V4
Timeline
Vulnerability published
Vulnerability Reserved