CVE-2025-59776: AutomationDirect Productivity Suite Relative Path Traversal
A relative path traversal vulnerability was discovered in Productivity Suite software version 4.4.1.19. The vulnerability allows an unauthenticated remote attacker to interact with the ProductivityService PLC simulator and create arbitrary directories on the target machine.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-59776?
CVE-2025-59776 is classified as a high-severity vulnerability due to its potential for arbitrary directory creation by unauthorized users.
How do I fix CVE-2025-59776?
To fix CVE-2025-59776, upgrade your AutomationDirect Productivity Suite to version 4.4.1.20 or later.
Which versions of the software are affected by CVE-2025-59776?
CVE-2025-59776 affects Productivity Suite version 4.4.1.19 and prior versions.
What types of attacks are possible due to CVE-2025-59776?
Due to CVE-2025-59776, an unauthenticated remote attacker can create arbitrary directories on the target machine.
Who is impacted by CVE-2025-59776?
Organizations using AutomationDirect's Productivity Suite software version 4.4.1.19 and prior are impacted by CVE-2025-59776.