CVE-2024-8526: Automated Logic, A Carrier Company Webctrl
Medium severity, CVSS 5.9. EPSS: 0.7% chance of exploitation in the next 30 days.
A vulnerability in Automated Logic WebCTRL 7.0 could allow an attacker to send a maliciously crafted URL, which when visited by an authenticated WebCTRL user, could result in the redirection of the user to a malicious webpage via "index.jsp"
Affected products
- Automated Logic, A Carrier Company Webctrl: version 7.0 only
- Carrier I-Vu: version 7.0 only
Published 2024-11-21. Last modified 2026-06-17.