CVE-2025-60023: AutomationDirect Productivity Suite Relative Path Traversal
A relative path traversal vulnerability was discovered in Productivity Suite software version 4.4.1.19. The vulnerability allows an unauthenticated remote attacker to interact with the ProductivityService PLC simulator and delete arbitrary directories on the target machine.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-60023?
CVE-2025-60023 is categorized as a critical severity vulnerability due to its potential for unauthorized remote directory deletion.
How do I fix CVE-2025-60023?
To fix CVE-2025-60023, users should upgrade to the latest version of Productivity Suite software that addresses this vulnerability.
Who is affected by CVE-2025-60023?
CVE-2025-60023 affects users of AutomationDirect's Productivity Suite version 4.4.1.19 and prior, including various CPU models.
What impact does CVE-2025-60023 have?
CVE-2025-60023 allows unauthenticated remote attackers to delete arbitrary directories on the target machine, posing a significant risk.
Is authentication required to exploit CVE-2025-60023?
No, CVE-2025-60023 can be exploited by unauthenticated attackers, making it particularly dangerous.