CVE-2026-25086

EUVD-2026-13844
Under certain conditions, an attacker could bind to the same port used 
by WebCTRL. This could allow the attacker to craft and send malicious 
packets and impersonate the WebCTRL service without requiring code 
injection into the WebCTRL software.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
7.7 HIGH
LOCAL
LOW
NONE
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
icscertCNA
7.7 HIGH
LOCAL
LOW
NONE
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N