CVE-2026-25086CWE-605

Automated Logic WebCTRL Premium Server Multiple Binds to the Same Port

High · published March 20, 2026

CVSS v3.1
7.7
EPSS
0%
Percentile
4.6
In the wild
Unconfirmed
What it is

Under certain conditions, an attacker could bind to the same port used

by WebCTRL. This could allow the attacker to craft and send malicious

packets and impersonate the WebCTRL service without requiring code

injection into the WebCTRL software.

The record
Technical detail
CVSS v3.1
7.7 · HIGH
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
CVSS v4.0
Not supplied
EPSS
0.00151 · 4.6th percentile
Weakness
CWE-605 · Multiple Binds to the Same Port
Published
2026-03-20T23:14Z
EPSS history
Timeline
  • 20 MAR 23:14Z
    Automated Logic WebCTRL Premium Server Multiple Binds to the Same Port
    cvelistv5