CVE-2025-58069

Publication date

2025-09-23 22:04:58

Family

icscert

State

PUBLISHED

Description

The use of a hard-coded cryptographic key was discovered in firmware version 3.60 of the Click Plus PLC. The vulnerability relies on the fact that the software contains a hard-coded AES key used to protect the initial messages of a new KOPS session.