Automationdirect manufactures programmable logic controllers and industrial automation equipment, with a concentrated vulnerability footprint centered on its P-series controller product line and associated firmware. Vulnerabilities affecting this vendor skew strongly toward critical-severity outcomes and recur through memory-safety and authentication-oriented weakness classes including out-of-bounds writes, stack-based buffer overflows, cleartext transmission of sensitive data, and authentication bypass conditions. The exposure pattern reflects the firmware-based nature of these devices and their role in operational technology environments where memory corruption and authentication weakening create direct control-plane risk. While the overall disclosure volume is modest relative to enterprise software vendors, the prominence of this vendor's products in industrial deployments and the severity tendency of its disclosures warrant consistent monitoring. Current exploitation activity, KEV listing status, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Automationdirect over time
Signals from CVEs in this vendor scope (35 CVEs).
35 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2022-2003CRITICAL AutomationDirect DirectLOGIC is vulnerable to a specifically crafted serial message to the CPU serial port that will cause the PLC to respond with the PLC password in cleartext. Th | Aug 31, 2022 | 9.1 | 30 | NO | NO |
CVE-2021-32986CRITICAL After Automation Direct CLICK PLC CPU Modules: C0-1x CPUs with firmware prior to v3.00 is unlocked by an authorized user, the unlocked state does not timeout. If the programming so | Apr 4, 2022 | 9.8 | 30 | NO | NO |
CVE-2021-32984CRITICAL All programming connections receive the same unlocked privileges, which can result in a privilege escalation. During the time Automation Direct CLICK PLC CPU Modules: C0-1x CPUs wi | Apr 4, 2022 | 9.8 | 30 | NO | NO |
CVE-2020-10921CRITICAL This vulnerability allows remote attackers to issue commands on affected installations of C-MORE HMI EA9 Firmware version 6.52 touch screen panels. Authentication is not required t | Jul 23, 2020 | 9.8 | 30 | NO | NO |
CVE-2021-32980CRITICAL Automation Direct CLICK PLC CPU Modules: C0-1x CPUs with firmware prior to v3.00 does not protect against additional software programming connections. An attacker can connect to th | Apr 4, 2022 | 9.8 | 29 | NO | NO |
CVE-2024-24963CRITICAL A stack-based buffer overflow vulnerability exists in the Programming Software Connection FileSelect functionality of AutomationDirect P3-550E 1.2.10.9. A specially crafted network | May 28, 2024 | 9.8 | 28 | NO | NO |
CVE-2024-23601CRITICAL A code injection vulnerability exists in the scan_lib.bin functionality of AutomationDirect P3-550E 1.2.10.9. A specially crafted scan_lib.bin can lead to arbitrary code execution. | May 28, 2024 | 9.8 | 28 | NO | NO |
CVE-2024-21785CRITICAL A leftover debug code vulnerability exists in the Telnet Diagnostic Interface functionality of AutomationDirect P3-550E 1.2.10.9. A specially crafted series of network requests can | May 28, 2024 | 9.8 | 28 | NO | NO |
CVE-2024-24962CRITICAL A stack-based buffer overflow vulnerability exists in the Programming Software Connection FileSelect functionality of AutomationDirect P3-550E 1.2.10.9. A specially crafted network | May 28, 2024 | 9.8 | 27 | NO | NO |
CVE-2024-24955HIGH Several out-of-bounds write vulnerabilities exist in the Programming Software Connection FileSystem API functionality of AutomationDirect P3-550E 1.2.10.9. Specially crafted networ | May 28, 2024 | 8.2 | 27 | NO | NO |
Signals from CVEs in this vendor scope (35 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Automationdirect.
Media articles that mention a CVE ID that affects a product developed by Automationdirect — matched by CVE ID, not by vendor name.