CVE-2025-61977
Severity CVSS v4.0:
HIGH
Type:
CWE-640
Weak Password Recovery Mechanism for Forgotten Password
Publication date:
23/10/2025
Last modified:
23/10/2025
Description
A weak password recovery mechanism for forgotten password vulnerability was discovered in Productivity Suite software version v4.4.1.19. The vulnerability allows an attacker to decrypt an encrypted project by answering just one recovery question.
Impact
Base Score 4.0
7.30
Severity 4.0
HIGH
Base Score 3.x
7.00
Severity 3.x
HIGH



