CVE-2025-61934: AutomationDirect Productivity Suite Binding to an Unrestricted IP Address CWE-1327

Published Oct 23, 2025
·
Updated

A binding to an unrestricted IP address vulnerability was discovered in Productivity Suite software version v4.4.1.19. The vulnerability allows an unauthenticated remote attacker to interact with the ProductivityService PLC simulator and read, write, or delete arbitrary files and folders on the target machine

Affected Software

8 affected components
: AutomationDirect Productivity Suite: v4.4.1.19 and prior
: AutomationDirect Productivity 3000 P3-622 CPU: SW v4.4.1.19 and prior
: AutomationDirect Productivity 3000 P3-550E CPU: SW v4.4.1.19 and prior
: AutomationDirect Productivity 3000 P3-530 CPU: SW v4.4.1.19 and prior
: AutomationDirect Productivity 2000 P2-622 CPU: SW v4.4.1.19 and prior
: AutomationDirect Productivity 2000 P2-550 CPU: SW v4.4.1.19 and prior
: AutomationDirect Productivity 1000 P1-550 CPU: SW v4.4.1.19 and prior
: AutomationDirect Productivity 1000 P1-540 CPU: SW v4.4.1.19 and prior

Remediation

Information

AutomationDirect recommends that users do the following: * Update the Productivity Suite programming software to version 4.5.0.x or higher. * Update the firmware of Productivity PLCs to the latest version. https://www.automationdirect.com/support/software-downloads * Although automation networks and systems come equipped with built-in password protection mechanisms, this represents a fraction of the security measures needed to safeguard these systems. * It is imperative that automation control system networks integrate data protection and security measures that match, if not exceed, the robustness of conventional business computer systems. * AutomationDirect advises users of PLCs, HMI products, and SCADA systems to conduct a thorough network security analysis to ascertain the appropriate level of security necessary for their specific application.

Event History

Oct 23, 2025
Data Sourced
via ICS·09:53 PM
SeverityWeaknessAffected Software
CVE Published
via MITRE·10:01 PM
Data Sourced
via MITRE·10:01 PM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·10:15 PM
DescriptionSeverityWeakness

Parent advisories

This vulnerability appears in the following advisories.

Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Frequently Asked Questions

1

What is the severity of CVE-2025-61934?

CVE-2025-61934 has a critical severity level as it allows unauthenticated remote access to sensitive files.

2

How do I fix CVE-2025-61934?

To mitigate CVE-2025-61934, upgrade to the latest version of the Productivity Suite software.

3

What products are affected by CVE-2025-61934?

Products affected by CVE-2025-61934 include AutomationDirect Productivity Suite v4.4.1.19 and prior, among others listed.

4

Can CVE-2025-61934 lead to data loss?

Yes, CVE-2025-61934 enables attackers to read, write, or delete arbitrary files, potentially leading to data loss.

5

What kind of attacks can exploit CVE-2025-61934?

CVE-2025-61934 can be exploited by an unauthenticated remote attacker, posing severe security risks.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203