An issue was discovered in Biztalk360 before 11.5. Because of mishandling of user-provided input in an upload mechanism, an authenticated attacker is able to write files outside of the destination directory and/or coerce an authentication from the service, aka Directory Traversal.
Metrics
Affected Vendors & Products
References
History
Fri, 03 Apr 2026 21:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Directory Traversal Leading to Unauthorized File Write in Biztalk360 |
Fri, 03 Apr 2026 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-22 | |
| Metrics |
cvssV3_1
|
Fri, 03 Apr 2026 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An issue was discovered in Biztalk360 before 11.5. Because of mishandling of user-provided input in an upload mechanism, an authenticated attacker is able to write files outside of the destination directory and/or coerce an authentication from the service, aka Directory Traversal. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2026-04-03T15:12:37.606Z
Reserved: 2025-09-19T00:00:00.000Z
Link: CVE-2025-59711
Updated: 2026-04-03T15:08:33.167Z
Status : Awaiting Analysis
Published: 2026-04-03T15:16:04.637
Modified: 2026-04-03T16:16:22.840
Link: CVE-2025-59711
No data.
OpenCVE Enrichment
Updated: 2026-04-03T21:17:08Z