Executive brief
Weintek cMT3092X is a Human Machine Interface (HMI) used to monitor and control industrial equipment. A security flaw in its web management interface allows a user with low-level access to gain full administrative control by tampering with browser cookies. This could lead to unauthorized changes to industrial processes, data theft, or a complete shutdown of the affected control system.
Technical details
The vulnerability is classified as CWE-784 (Reliance on Cookies without Validation and Integrity Checking in a Security Decision). It exists within the EasyWeb component of the Weintek cMT3092X HMI. An authenticated attacker with low privileges can modify session cookies to bypass security checks and escalate their privileges to an administrative level. This is possible because the application fails to properly validate the integrity of the cookie data used for security decisions. A patch (cmt_typeB_20260316_007.patch) containing EasyWeb v2.3.17-typeb is available to address the issue.
Affected products
- Weintek cMT3092X firmware < 20210218
- Weintek EasyWeb < v2.1.20
Timeline
- 2026-07-23: advisory: CISA published advisory ICSA-26-204-03
- 2026-07-24: disclosed: CVE published to NVD dataset