Description

Under certain conditions, an attacker could bind to the same port used by WebCTRL. This could allow the attacker to craft and send malicious packets and impersonate the WebCTRL service without requiring code injection into the WebCTRL software.

INFO

Published Date :

2026-03-20T23:14:23.075Z

Last Modified :

2026-03-23T15:56:09.720Z

Source :

icscert
AFFECTED PRODUCTS

The following products are affected by CVE-2026-25086 vulnerability.

Vendors Products
Automatedlogic
  • Webctrl Server

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact