Описание
A binding to an unrestricted IP address vulnerability was discovered in Productivity Suite software version v4.4.1.19. The vulnerability allows an unauthenticated remote attacker to interact with the ProductivityService PLC simulator and read, write, or delete arbitrary files and folders on the target machine
A binding to an unrestricted IP address vulnerability was discovered in Productivity Suite software version v4.4.1.19. The vulnerability allows an unauthenticated remote attacker to interact with the ProductivityService PLC simulator and read, write, or delete arbitrary files and folders on the target machine
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2025-61934
- https://github.com/cisagov/CSAF/blob/develop/csaf_files/OT/white/2025/icsa-25-296-01.json
- https://support.automationdirect.com/docs/securityconsiderations.pdf
- https://www.automationdirect.com/support/software-downloads
- https://www.cisa.gov/news-events/ics-advisories/icsa-25-296-01
EPSS
9.3 Critical
CVSS4
10 Critical
CVSS3
CVE ID
Дефекты
Связанные уязвимости
A binding to an unrestricted IP address vulnerability was discovered in Productivity Suite software version v4.4.1.19. The vulnerability allows an unauthenticated remote attacker to interact with the ProductivityService PLC simulator and read, write, or delete arbitrary files and folders on the target machine
EPSS
9.3 Critical
CVSS4
10 Critical
CVSS3