AutomationDirect CLICK PLUS Cleartext Storage of Sensitive Information
Vulnerability Description
Cleartext storage of sensitive information was discovered in Click Programming Software version v3.60. The vulnerability can be exploited by a local user with access to the file system, while an administrator session is active, to steal credentials stored in clear text.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2025-54855
Credits & Attribution
The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:
- Luca Borzacchiello and Diego Zaffaroni of Nozomi Networks reported these vulnerabilities to Automation Direct.
References
More from AutomationDirect
View All →Affected Vendor
AutomationDirect
View all reports →