Impact
This vulnerability is a divide‑by‑zero error in AutomationDirect’s Productivity Suite. It allows a local attacker to trigger an exception that causes the application to crash, resulting in a denial of service of the affected system but without providing code execution or data compromise.
Affected Systems
AutomationDirect’s Productivity Suite for industrial control systems is affected. The issue impacts any installation of the suite that has not been upgraded to version 4.7.0.47 or higher. No other products or versions are expressly listed as vulnerable.
Risk and Exploitability
The CVSS score of 6.8 indicates a moderate severity. The EPSS score of less than 1% shows a very low likelihood of exploitation in the wild. The vulnerability is not in the CISA KEV catalog. The primary attack vector is local; a user who can execute code or run functions within the Productivity Suite on the target workstation can trigger the divide‑by‑zero error. If exploited, the system will crash, disrupting operations until the application is restarted.
OpenCVE Enrichment