PT-2026-22779 · Weintek · Cmt-3072Xh2+1

CVE-2024-55022

·

Publicado

2026-03-03

·

Atualizado

2026-03-04

CVSS v3.1

8.8

Alta

VetorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Weintek cMT-3072XH2 easyweb version 2.1.53, OS version 20231011
Description The software contains an authenticated command injection issue. The issue is triggered via the HMI Name parameter. An attacker with valid credentials can inject commands.
Recommendations Update to a newer version that contains a fix for this vulnerability.

Correção

Code Injection

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2024-55022

Produtos afetados

Cmt-3072Xh2
Easyweb