CISA advisory covers privilege-escalation flaws in Weintek cMT3092X firmware before 20210218. If the devices remain on those versions, update now.Cyber Resilience desk
Sources (1)
- cisa_advisories · cisa_advisories
What this means for you — CISO:If Weintek cMT3092X HMIs are in your OT estate, confirm firmware is 20210218 or later and EasyWeb is v2.1.20 or later; unpatched units allow non-privileged privilege escalation and credential disclosure (CVSS 8.8). Prioritize internet-exposed or poorly segmented panels.
What this means for you — Lean IT orgs:Most lean-IT shops do not run industrial HMI panels. If you use a Weintek cMT3092X, update its firmware and EasyWeb software now, or ask the vendor who maintains it to confirm those versions.
What this means for you — MSP:Inventory manufacturing and OT clients for Weintek cMT3092X panels and EasyWeb; schedule firmware ≥20210218 and EasyWeb ≥v2.1.20 where found, and flag any unit reachable from IT or the internet.
What this means for you — Researcher:CISA ICSA-26-204-03: Weintek cMT3092X firmware <20210218 and EasyWeb <v2.1.20 — non-privileged privilege escalation and credential disclosure, CVSS 8.8.