CVE-2025-58078: AutomationDirect Productivity Suite Relative Path Traversal
A relative path traversal vulnerability was discovered in Productivity Suite software version
4.4.1.19.
The vulnerability allows an unauthenticated remote attacker to interact with the ProductivityService PLC simulator and write files with arbitrary data on the target machine.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-58078?
CVE-2025-58078 is assessed as a critical severity vulnerability due to its potential for unauthorized file write operations.
How do I fix CVE-2025-58078?
To mitigate CVE-2025-58078, upgrade to the patched version of the Productivity Suite software that addresses this vulnerability.
Who is affected by CVE-2025-58078?
CVE-2025-58078 affects users of AutomationDirect Productivity Suite software version 4.4.1.19 and prior.
What type of attack can leverage CVE-2025-58078?
CVE-2025-58078 can be exploited by unauthenticated remote attackers to perform relative path traversal and manipulate files on the system.
Can CVE-2025-58078 be exploited remotely?
Yes, CVE-2025-58078 allows unauthenticated remote attackers to interact with the vulnerable system.