Weintek cMT3092X HMI patches privilege flaws
Weintek's cMT3092X HMI has four vulnerabilities allowing privilege escalation and plaintext password exposure, fixed via a vendor patch.
CISA published an advisory for the Weintek cMT3092X HMI, used in critical manufacturing environments worldwide, detailing four vulnerabilities affecting firmware versions prior to 20210218 and EasyWeb versions prior to v2.1.20. The flaws include cookie manipulation to gain elevated privileges (CVE-2026-60134), token manipulation for privilege escalation (CVE-2026-61892), plaintext storage of user account passwords (CVE-2026-61886), and improper access control allowing modification of read-only data (CVE-2026-60135).
Successful exploitation would allow a non-privileged user to escalate privileges or view credentials belonging to other users, posing a risk to industrial control environments where these HMIs are deployed. Weintek has released a patch package (cmt_typeB_20260316_007.patch) delivering EasyWeb 2.3.17-typeb as a patch-only fix, available through vendor support or distributors, with no separate firmware release planned.
CISA states no known public exploitation of these vulnerabilities has been reported at this time. The issues were responsibly disclosed to CISA by an independent researcher, Vincenzo Giuseppe Colacino of Secoore.
Mentioned in this report
Source reporting: https://www.cisa.gov/news-events/ics-advisories/icsa-26-204-03
This is the public brief
Subscribers see the full picture: extracted IOCs, ready-to-deploy detections (Sigma, Splunk, KQL, Elastic, YARA, Suricata), the entity graph, TAXII 2.1 feed and real-time alerts matched to your sectors.
Start free