CVE 8.6 HIGH

AutomationDirect Productivity Suite Relative Path Traversal_CVE-2025-62498

8.6 / 10
HIGH
CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N

Description

A relative path traversal (ZipSlip) vulnerability was discovered in Productivity Suite software version

4.4.1.19. The vulnerability allows an attacker who can tamper with a productivity project to execute arbitrary code on the machine where the project is opened.

AI Analysis

Relative path traversal (ZipSlip) vulnerability allowing arbitrary code execution

Basic Information

ID CVE-2025-62498
Source icscert
Published Oct 23, 2025 at 21:46

Affected Product

Vendor AutomationDirect
Product Productivity Suite
Version 4.4.1.19
Affected Versions AutomationDirect Productivity Suite 0
AutomationDirect Productivity 3000 P3-622 CPU 0
AutomationDirect Productivity 3000 P3-550E CPU 0
AutomationDirect Productivity 3000 P3-530 CPU 0
AutomationDirect Productivity 2000 P2-622 CPU 0
AutomationDirect Productivity 2000 P2-550 CPU 0
AutomationDirect Productivity 1000 P1-550 CPU 0
AutomationDirect Productivity 1000 P1-540 CPU 0

CWE Classification

AI Assessment

AI Score 8.6 / 10
AI Severity High
Vendor AutomationDirect
Product Productivity Suite
Version 4.4.1.19

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.