Path Traversal Vulnerability in Rocket TRUfusion Enterprise by Rocket Software
CVE-2025-59793

Currently unrated

Key Information:

Vendor
CVE Published:
17 February 2026

What is CVE-2025-59793?

Rocket TRUfusion Enterprise versions up to 7.10.5 contain a vulnerability that exposes the endpoint at /axis2/services/WsPortalV6UpDwAxis2Impl to authenticated users. This flaw allows attackers to upload files without adequate sanitization of the jobDirectory parameter, enabling them to exploit path traversal sequences. Consequently, this vulnerability permits writing files to arbitrary locations on the local filesystem, which may facilitate remote code execution, putting the integrity and confidentiality of the system at risk.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.