PT-2026-30047 · Unknown · Biztalk360

Published

2026-04-03

·

Updated

2026-04-03

·

CVE-2025-59711

CVSS v3.1

8.3

High

AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:L
Name of the Vulnerable Software and Affected Versions Biztalk360 versions prior to 11.5
Description A flaw exists in Biztalk360 that allows an authenticated attacker to write files outside the intended destination directory and potentially bypass authentication. This is due to improper handling of user-supplied data during file uploads. The issue involves a directory traversal condition.
Recommendations Update Biztalk360 to version 11.5 or later.

Fix

Path traversal

Weakness Enumeration

Related Identifiers

CVE-2025-59711

Affected Products

Biztalk360