cMT3092X
by Weintek
CVEs (4)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2026-61892 | hig | 0.57 | 8.8 | — | Jul 23, 2026 | Weintek cMT3092X HMI allows a non-privileged user to modify tokens to escalate privileges. | ||
| CVE-2026-60134 | hig | 0.57 | 8.8 | — | Jul 23, 2026 | Weintek cMT3092X HMI allows a non-privileged user to modify cookies to gain elevated privileges. | ||
| CVE-2026-60135 | med | 0.42 | 6.5 | — | Jul 23, 2026 | An attacker can modify data that should be restricted to read‑only access. | ||
| CVE-2026-61886 | med | 0.42 | 6.5 | — | Jul 23, 2026 | Weintek cMT3092X HMI stores user account passwords in plaintext. |
- risk 0.57cvss 8.8epss —
Weintek cMT3092X HMI allows a non-privileged user to modify tokens to escalate privileges.
- risk 0.57cvss 8.8epss —
Weintek cMT3092X HMI allows a non-privileged user to modify cookies to gain elevated privileges.
- risk 0.42cvss 6.5epss —
An attacker can modify data that should be restricted to read‑only access.
- risk 0.42cvss 6.5epss —
Weintek cMT3092X HMI stores user account passwords in plaintext.