PT-2026-22781 · Weintek · Cmt-3072Xh2+1

Published

2026-03-03

·

Updated

2026-03-04

·

CVE-2024-55024

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Weintek cMT-3072XH2 easyweb version 2.1.53, OS version 20231011
Description An authentication bypass exists in the authorization mechanism of the software. This allows unauthorized attackers to perform administrative actions using service accounts.
Recommendations Update to a newer version that contains a fix for this vulnerability.

Fix

Protection Mechanism Failure

Weakness Enumeration

Related Identifiers

CVE-2024-55024

Affected Products

Cmt-3072Xh2
Easyweb