CVE-2025-62688: AutomationDirect Productivity Suite Incorrect Permission Assignment for Critical Resource
An incorrect permission assignment for a critical resource vulnerability was discovered in Productivity Suite software version 4.4.1.19. The vulnerability allows an attacker with low-privileged credentials to change their role, gaining full control access to the project.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-62688?
CVE-2025-62688 is considered a critical vulnerability due to its potential for unauthorized access and control over the software.
How do I fix CVE-2025-62688?
To fix CVE-2025-62688, upgrade to the latest version of the Productivity Suite software that addresses this vulnerability.
What systems are affected by CVE-2025-62688?
CVE-2025-62688 affects AutomationDirect Productivity Suite and various models of the Productivity 3000 and 2000 CPUs running version 4.4.1.19 and prior.
What type of attack can exploit CVE-2025-62688?
CVE-2025-62688 can be exploited by attackers with low-privileged credentials to elevate their access and control the project.
Is there a patch available for CVE-2025-62688?
Yes, a patch is available in the latest release of the affected Productivity Suite software to mitigate CVE-2025-62688.