AutomationDirect Productivity Suite
- <= v4.6.2.2
A divide-by-zero vulnerability has been identified in AutomationDirect Productivity Suite versions through 4.6.2.2. This vulnerability allows a local attacker to cause a system crash by exploiting the division by zero error.
Exploitation of this vulnerability leads to a system crash, causing a denial-of-service condition.
Users are advised to update AutomationDirect Productivity Suite to version 4.7.0.47 or above. If the update cannot be applied immediately, it is recommended to disconnect the engineering workstation from external networks, use trusted internal networks for device communication, restrict access to authorized personnel, configure application whitelisting, use antivirus or endpoint detection and response tools, enable and review system logs, maintain secure backups of programmable logic controller configurations, and evaluate risks of outdated firmware.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.