CNNVD-202510-3189 Information

CNNVD ID

CNNVD-202510-3189

CVE-2025-62498

  • CNNVD Published: 2025-10-23

Description (Chinese)

AutomationDirect Productivity Suite是美国AutomationDirect公司的一款可编程逻辑控制器编程软件。 AutomationDirect Productivity Suite 4.4.1.19版本存在安全漏洞,该漏洞源于相对路径遍历漏洞,可能导致执行任意代码。

Description (English)

Automation Direct Production Suite is a programmable logical controller programming software for Automation Direct. There is a security loophole in version 4.4.1.19 of Automation Direct Production System, which stems from a loophole of relative pathways that may lead to the implementation of any code.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

AutomationDirect

Published

2025-10-23

Last Modified

2026-02-24

References

https://github.com/cisagov/CSAF/blob/develop/csaf_files/OT/white/2025/icsa-25-296-01.json https://www.automationdirect.com/support/software-downloads https://www.cisa.gov/news-events/ics-advisories/icsa-25-296-01

Patch

https://www.productivitysuite.com/

Share on: