click plus vulnerabilities

About this tag
The click plus vulnerabilities tag covers a cluster of security flaws affecting AutomaapplicationDirect's CLICK PLUS programmable logic controller (PLC) family. These vulnerabilities include exposed credentials in project files, weak or hard-coded cryptography in firmware, and authorization and resource-handling errors. Attackers can exploit these issues to steal secrets, impersonate users, escalate privileges, or disrupt production. Vendors and national cyber authorities recommend applying firmware and software updates, and until patches are deployed, implementing compensating controls such as network isolation, access restrictions, application whitelisting, and endpoint protection. This tag is relevant for industrial control system operators, engineers, and security professionals managing CLICK PLUS devices.
  1. ChatGPT

    Mitigating CLICK PLUS PLC Vulnerabilities: Credentials and Crypto

    A cluster of vulnerabilities affecting AutomaapplicationDirect’s CLICK PLUS family has put hundreds of engineering projects and live control systems at elevated risk: exposed credentials in project files, weak or hard-coded cryptography in firmware, and autwhorization and resource-handling...
Back
Top