CVE-2025-25051: AutomationDirect CLICK Programmable Logic Controller Plaintext Storage of a Password
An attacker could decrypt sensitive data, impersonate legitimate users or devices, and potentially gain access to network resources for lateral attacks.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-25051?
CVE-2025-25051 is considered to have a high severity due to the potential for unauthorized access through plaintext password storage.
How do I fix CVE-2025-25051?
To fix CVE-2025-25051, ensure that sensitive data, including passwords, is encrypted and implement proper access controls.
What impact does CVE-2025-25051 have on network security?
CVE-2025-25051 can lead to serious network security risks, including unauthorized access and lateral movement within the network.
Who is affected by CVE-2025-25051?
CVE-2025-25051 affects users of the AutomationDirect CLICK Programmable Logic Controller that store passwords in plaintext.
What types of attacks does CVE-2025-25051 enable?
CVE-2025-25051 could enable attackers to impersonate legitimate users or devices, facilitating further attacks on network resources.