CVE-2025-59484HIGH 8.3EPSS p1.9%

CVE-2025-59484CVE-2025-59484

Description

The use of a broken or risky cryptographic algorithm was discovered in firmware version 3.60 of the Click Plus PLC. The vulnerability relies on the fact that the software uses an insecure implementation of the RSA encryption algorithm.

Scoring

CVSS 3.18.3 (HIGH)
VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:L
EPSS0.11% probability of exploitation · percentile 1.9% · 2026-06-19T12:03:05Z
Published2025-09-23
Last modified2026-04-15

Underlying weaknesses· 1

CWE-327

References

  1. https://www.automationdirect.com/support/software-downloads
  2. https://www.cisa.gov/news-events/ics-advisories/icsa-25-266-01

1

TypeTargetConfidenceTier
WeaknessUse of a Broken or Risky Cryptographic Algorithmcwe-3270%live

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

CVE
CVE-2025-55069
CVE
CVE-2026-25293
CVE
CVE-2025-3200
CVE
CVE-2025-48466
CVE
CVE-2026-24790
CVE
CVE-2025-0477
Sourced from NVD + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.