VYPR

Cmt3103

by Weintek

CVEs (3)

  • CVE-2023-43492Oct 19, 2023
    risk 0.00cvss epss 0.00

    In Weintek's cMT3000 HMI Web CGI device, the cgi-bin codesys.cgi contains a stack-based buffer overflow, which could allow an anonymous attacker to hijack control flow and bypass login authentication.

  • CVE-2023-40145Oct 19, 2023
    risk 0.00cvss epss 0.00

    In Weintek's cMT3000 HMI Web CGI device, an anonymous attacker can execute arbitrary commands after login to the device.

  • CVE-2023-38584Oct 19, 2023
    risk 0.00cvss epss 0.00

    In Weintek's cMT3000 HMI Web CGI device, the cgi-bin command_wb.cgi contains a stack-based buffer overflow, which could allow an anonymous attacker to hijack control flow and bypass login authentication.