CVE-2025-61934
A binding to an unrestricted IP address vulnerability was discovered in Productivity Suite software version v4.4.1.19. The vulnerability allows an unauthenticated remote attacker to interact with the ProductivityService PLC simulator and read, write, or delete arbitrary files and folders on the target machine
Published:Oct 23, 2025
Last Modified:Apr 15, 2026
EPS:Oct 23, 2025
EPSS Score:0.00337
CVSS Score:10
Affected Products
Vendor
Product
Action
Vendor
Automationdirect
Product
P1-540
Automationdirect
P1-540
Vendor
Automationdirect
Product
P1-550
Automationdirect
P1-550
Vendor
Automationdirect
Product
P2-550
Automationdirect
P2-550
Vendor
Automationdirect
Product
P2-622
Automationdirect
P2-622
Vendor
Automationdirect
Product
P3-530
Automationdirect
P3-530
Vendor
Automationdirect
Product
P3-550e
Automationdirect
P3-550e
Vendor
Automationdirect
Product
P3-622
Automationdirect
P3-622
Vendor
Automationdirect
Product
Productivity Suite
Automationdirect
Productivity Suite
Exploits
No exploit reference
Common Weakness Enumeration
Common Attack Pattern Enumeration and Classification (CAPEC)
Related CVEs
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
