CVE-2026-60134
Weintek · cMT3092X firmware
The Weintek cMT3092X HMI allows authenticated non-privileged users to modify cookies to escalate their privileges.
Executive summary
A high-severity privilege escalation vulnerability in Weintek cMT3092X HMI allows authenticated users to bypass security controls by manipulating session cookies.
Vulnerability
This is a privilege management flaw (CWE-784) where the software incorrectly validates session cookies. An authenticated, non-privileged user can modify these cookies to gain elevated administrative privileges.
Business impact
Successful exploitation grants an attacker administrative control over the HMI, which could lead to unauthorized modification of industrial processes or unauthorized access to sensitive system configurations. With a CVSS score of 8.8, the potential for operational disruption and unauthorized system access is severe.
Remediation
Immediate Action: Apply the specific patch package cmt_typeB_20260316_007.patch provided by Weintek, which updates EasyWeb to 2.3.17-typeb.
Proactive Monitoring: Review system logs for unauthorized account changes or activity performed by standard user accounts that would typically require administrative privileges.
Compensating Controls: Strictly limit network access to the HMI interface to known, trusted IP addresses to reduce the likelihood of unauthorized users reaching the login interface.
Exploitation status
Public Exploit Available: Unknown.
Analyst recommendation
This vulnerability represents a significant risk to industrial control environments. Administrators should obtain the necessary patch directly from Weintek support or authorized distributors and apply it immediately to prevent unauthorized privilege escalation.