Опубликовано: 24 окт. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 7.3
CVSS3: 7
Описание
A weak password recovery mechanism for forgotten password vulnerability was discovered in Productivity Suite software version v4.4.1.19. The vulnerability allows an attacker to decrypt an encrypted project by answering just one recovery question.
A weak password recovery mechanism for forgotten password vulnerability was discovered in Productivity Suite software version v4.4.1.19. The vulnerability allows an attacker to decrypt an encrypted project by answering just one recovery question.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2025-61977
- https://github.com/cisagov/CSAF/blob/develop/csaf_files/OT/white/2025/icsa-25-296-01.json
- https://support.automationdirect.com/docs/securityconsiderations.pdf
- https://www.automationdirect.com/support/software-downloads
- https://www.cisa.gov/news-events/ics-advisories/icsa-25-296-01
Связанные уязвимости
CVSS3: 7
nvd
4 месяца назад
A weak password recovery mechanism for forgotten password vulnerability was discovered in Productivity Suite software version v4.4.1.19. The vulnerability allows an attacker to decrypt an encrypted project by answering just one recovery question.