Weintek cMT-3072XH2 VNC Authorization Bypass Vulnerability

Vulnerability

An authenticated command injection vulnerability has been identified in the Weintek cMT-3072XH2 HMI product, specifically in easyweb version 2.1.53 and OS version 20231011. The vulnerability arises from improper input validation in the HMI name parameter, allowing authenticated users to inject commands that are executed with elevated privileges after a system reboot. This exploitation could lead to unauthorized access and control over the HMI system and the industrial processes it manages.

Impact

Exploitation of this vulnerability allows for unauthorized VNC access using built-in service accounts, bypassing authorization checks and enabling control over the HMI interface.

Added: Mar 3, 2026, 8:36 PM
Updated: Mar 3, 2026, 10:21 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
7.5
exploitability
3.5
remediation
0.0
relevance
3.4
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.