Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Solution
Weintek recommends users apply the patch package named cmt_typeB_20260316_007.patch, which contains a newer EasyWeb 2.3.17-typeb. This fix will be delivered as a patch-only update; no separate standard firmware release is planned. Users may request the patch directly from Weintek support ( https://www.weintek.com/globalw/Support/Knowledge.aspx ) or from distributors.
Tracking
Sign in to view the affected projects.
No advisories yet.
Fri, 24 Jul 2026 22:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Weintek cMT3092X HMI allows a non-privileged user to modify tokens to escalate privileges. | |
| Title | Weintek cMT3092X Incorrect Permission Assignment for Critical Resource | |
| Weaknesses | CWE-732 | |
| References |
| |
| Metrics |
cvssV3_1
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: icscert
Published:
Updated: 2026-07-24T22:16:58.155Z
Reserved: 2026-07-16T16:04:55.185Z
Link: CVE-2026-61892
No data.
No data.
No data.
OpenCVE Enrichment
No data.