Review reviewHigh
CVE-2026-60134
Weintek cMT3092X firmware, EasyWeb
Weintek cMT3092X HMI allows a non-privileged user to modify cookies to gain elevated privileges.
- CVSS
- 8.7
- EPSS
- - - percentile
- CISA KEV
- Not listed
- Published
- 2026.07.25
Weintek cMT3092X HMI allows a non-privileged user to modify cookies to gain elevated privileges.
The CVSS severity warrants an early asset and exposure review.
Weintek cMT3092X HMI allows a non-privileged user to modify cookies to gain elevated privileges.
Confirm exposure before applying a vendor-supported change.
Confirm that Weintek cMT3092X firmware, EasyWeb and an affected version are present.
Combine exploitation signals with asset exposure and business criticality.
Follow the vendor advisory or supported update path and preserve rollback options.
Recheck the version, service health, access paths, and relevant logs.