CVE-2026-32666
WebCTRL systems that communicate over BACnet inherit the protocol's lack of network layer authentication. WebCTRL does not implement additional validation of BACnet traffic so an attacker with ne...
Affects 0 products across 3 vendors.
Show all 10
Mapping is CWE-to-CAPEC per MITRE CAPEC 3.9.
WebCTRL systems communicating over BACnet are vulnerable to spoofed BACnet packets due to the protocol's lack of network layer authentication and WebCTRL's lack of additional validation.
BSID: BS-2026-GLOBAL-273838-H • Model: /workspace/models/qwen2.5-coder-32b-instruct-bf16 • Confidence: MEDIUM
Is this CVE in your environment?
BreachSpider monitors your ICS/OT environment for vulnerabilities like this one. No agents or network access required. Free to start.
Check My Environment →What is CVE-2026-32666?
What is the CVSS score for CVE-2026-32666?
Is CVE-2026-32666 actively exploited?
How do I remediate CVE-2026-32666?
What systems are affected by CVE-2026-32666?
| CVE ID | CVE-2026-32666 |
|---|---|
| BSID | BS-2026-GLOBAL-273838-H BreachSpider Global ID |
| CVSS Vector | CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N |
| Published | 2026-03-21 |
| Last Modified | 2026-03-23 |
| ICS Relevance | 0% |
| Weakness (CWE) | |
| Source | NVD |
WebCTRL systems that communicate over BACnet inherit the protocol's lack of network layer authentication. WebCTRL does not implement additional validation of BACnet traffic so an attacker with network access could spoof BACnet packets directed at either the WebCTRL server or associated AutomatedLogic controllers. Spoofed packets may be processed as legitimate.
Source: NIST NVD / MITRE CVE Database
An attacker with network access can spoof BACnet packets directed at the WebCTRL server or associated AutomatedLogic controllers. These spoofed packets may be processed as legitimate by the system.
Exploitation Likelihood: MEDIUM
| Vendor | Product | Fixed Version |
|---|---|---|
| Associated | — | — |
| Automatedlogic | — | — |
| Protocol | — | — |
| CISA KEV | Not in KEV catalog |
|---|---|
| Public Exploit | Not confirmed |
| PoC Code | Not confirmed |
SAGE Enrichment Record — provenance & audit hash
| Model | /workspace/models/qwen2.5-coder-32b-instruct-bf16 |
|---|---|
| Confidence | MEDIUM |
| Enriched At | 2026-05-24 |
| SHA-512 Audit Hash | bcd1adde3799b860fb337afb67818206d9664ec8426558f54984b4528f034d5af46f74e337bfa8e26a97b741ba600c8e6ba3509939a07c23acbf41173f25b264 |
ICS/OT Vulnerability Intelligence for Your Environment
BreachSpider monitors 353,228 CVEs across ICS/OT vendors. SAGE-enriched alerts with virtual patches, NERC-CIP mapping, and PSIRT contacts delivered to your SIEM in minutes.
Join free →