Monitor vulnerabilities like this one.
Sign up free to get alerted when software you use is affected.
7.7
WebCTRL service impersonation risk from unauthorized port sharing
CVE-2026-25086
Summary
An attacker can impersonate the WebCTRL service if they can bind to the same port, potentially allowing them to send malicious packets. This could happen if the port is not properly secured. To protect against this, ensure that the port used by WebCTRL is not accessible to unauthorized users.
Original title
Under certain conditions, an attacker could bind to the same port used
by WebCTRL. This could allow the attacker to craft and send malicious
packets and impersonate the WebCTRL service without re...
Original description
Under certain conditions, an attacker could bind to the same port used
by WebCTRL. This could allow the attacker to craft and send malicious
packets and impersonate the WebCTRL service without requiring code
injection into the WebCTRL software.
by WebCTRL. This could allow the attacker to craft and send malicious
packets and impersonate the WebCTRL service without requiring code
injection into the WebCTRL software.
nvd CVSS3.1
7.7
Vulnerability type
CWE-605
Published: 21 Mar 2026 · Updated: 21 Mar 2026 · First seen: 21 Mar 2026