Incontrol
This hub aggregates every CVE we track for Incontrol, a product in the ics ot iot space. Use it to gauge the current risk picture and drill into individual advisories.
9
CVEs tracked
0
Critical
3
High
0
In CISA KEV
Severity distribution
LOW4HIGH3MEDIUM2
Monthly trend
2
0
0
0
1
0
0
0
1
1
1
1
0
0
0
0
0
0
0
0
0
1
0
0
2024-092026-08
Latest CVEs
The 9 most recently published vulnerabilities affecting Incontrol.
- CVE-2026-57920Peplink InControl 2 through 2.14.2 before 2026-06-03 allows use of a semicolon to bypass access-control rules for certain /rest/o/{orgId} endpoints.7.7
- CVE-2025-8515Intelbras InControl JSON Endpoint operador information disclosure3.1
- CVE-2025-7061Intelbras InControl operador csv injection2.7
- CVE-2025-6765Intelbras InControl HTTP PUT Request operador permission6.3
- CVE-2025-4286Intelbras InControl Dispositivos Edição Page credentials storage2.7
- CVE-2025-0784Intelbras InControl Registered User usuario cleartext transmission3.7
- CVE-2024-9325Intelbras InControl incontrol-service-watchdog.exe unquoted search path7.8
- CVE-2024-9324Intelbras InControl Relatório de Operadores Page operador code injection6.3
- CVE-2024-6080Intelbras InControl incontrolWebcam Service unquoted search path7.8
Product normalization is registry-driven with AI assist and human review. How it works