CVE-2026-25086CWE-605
Automated Logic WebCTRL Premium Server Multiple Binds to the Same Port
High · published March 20, 2026
What it is
Under certain conditions, an attacker could bind to the same port used
by WebCTRL. This could allow the attacker to craft and send malicious
packets and impersonate the WebCTRL service without requiring code
injection into the WebCTRL software.
The record
Technical detail
- CVSS v3.1
- 7.7 · HIGH
- Vector
- CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
- CVSS v4.0
- Not supplied
- EPSS
- 0.00151 · 4.6th percentile
- Weakness
- CWE-605 · Multiple Binds to the Same Port
- Published
- 2026-03-20T23:14Z
EPSS history
Timeline