Weintek cMT3092X
Plan PatchCVSS 8.8ICS-CERT ICSA-26-204-03Jul 23, 2026
Weintek
Attack path
Attack VectorNetwork
Auth RequiredLow
ComplexityLow
User InteractionNone needed
Summary
Weintek cMT3092X panels with firmware prior to version 20210218 and EasyWeb versions prior to v2.1.20 contain credential storage and privilege escalation vulnerabilities. A non-privileged user with access to the panel could escalate privileges to administrator level or view credentials of other users, potentially gaining unauthorized control of the HMI and its connected systems.
What this means
What could happen
A non-privileged user with local access to a cMT3092X panel could escalate their privileges to administrator level or steal credentials of other users, potentially allowing them to modify control logic or access sensitive operational data.
Who's at risk
Water utilities, municipalities, and industrial facilities using Weintek cMT3092X HMI (Human Machine Interface) panels for process monitoring and control. Any operation relying on the cMT3092X for critical process visualization or supervisory control should prioritize this update, particularly if the panel stores user credentials or accepts connections from multiple users.
How it could be exploited
An attacker with a low-privilege user account on the cMT3092X panel could exploit credential storage or privilege escalation flaws in EasyWeb to gain administrative access to the device. This would allow them to modify application logic, change setpoints, or disable alarms without proper authorization.
Prerequisites
- Local or network access to the cMT3092X panel
- A valid non-privileged user account on the device
- Affected firmware version (pre-20210218) or EasyWeb version (pre-v2.1.20)
Remotely exploitable over networkRequires valid user credentialsAffects HMI/supervisory control systemCredential theft capabilityPrivilege escalation risk
Exploitability
Unlikely to be exploited — EPSS score 0.3%
Affected products (2)
1 with fix1 pending
ProductAffected VersionsFix Status
cMT3092X firmware<20210218No fix yet
EasyWeb<v2.1.20Fix available
Remediation & Mitigation
0/4
Do now
0/3HARDENINGRestrict network access to the cMT3092X panel to only authorized engineering workstations using firewall rules
WORKAROUNDDisable remote access to the panel management interface if not required for operations
HARDENINGConduct a user account review on all cMT3092X devices and disable any unused or default accounts
Schedule — requires maintenance window
0/1Patching may require device reboot — plan for process interruption
EasyWeb
HOTFIXApply the patch package cmt_typeB_20260316_007.patch containing EasyWeb 2.3.17-typeb from Weintek support
↑↓ Navigate · Esc Close
API:
/api/v1/advisories/160c8639-65d7-4fc0-bcbf-63c744f5de06Get OT security insights every Tuesday
Advisory breakdowns, a weekly summary, and incident analyses for the people actually defending OT environments. Free, no account required.