Description
A relative path traversal (ZipSlip) vulnerability was discovered in Productivity Suite software version 4.4.1.19. The vulnerability allows an attacker who can tamper with a productivity project to execute arbitrary code on the machine where the project is opened.
Problem types
Product status
Any version
Any version
Any version
Any version
Any version
Any version
Any version
Any version before SW v4.4.1.19
Credits
Luca Borzacchiello of Nozomi Networks reported these vulnerabilities to AutomationDirect.
References
www.cisa.gov/news-events/ics-advisories/icsa-25-296-01
www.automationdirect.com/support/software-downloads
github.com/...p/csaf_files/OT/white/2025/icsa-25-296-01.json