CVE-2025-59484: AutomationDirect CLICK PLUS Use of a Broken or Risky Cryptographic Algorithm
The use of a broken or risky cryptographic algorithm was discovered in firmware version 3.60 of the Click Plus PLC. The vulnerability relies on the fact that the software uses an insecure implementation of the RSA encryption algorithm.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-59484?
CVE-2025-59484 is considered to have a high severity due to the use of a broken cryptographic algorithm in the affected firmware.
How do I fix CVE-2025-59484?
To fix CVE-2025-59484, update the affected firmware to version 3.71 or later.
What products are affected by CVE-2025-59484?
CVE-2025-59484 affects the AutomationDirect CLICK PLUS C0-0x, C0-1x, and C2-x CPU firmware versions up to 3.71.
How does CVE-2025-59484 impact security?
CVE-2025-59484 compromises the security of data encryption, making it susceptible to potential breaches.
Is there a known exploit for CVE-2025-59484?
Currently, there are no publicly disclosed exploits specifically targeting CVE-2025-59484, but the vulnerability poses a risk if not mitigated.