Authenticated Command Injection Vulnerability in Weintek cMT-3072XH2
CVE-2024-55022
8.8HIGH
What is CVE-2024-55022?
The Weintek cMT-3072XH2 device has been found to be vulnerable to an authenticated command injection that can be exploited through the HMI Name parameter. This weakness allows an attacker with valid credentials to execute arbitrary commands, leading to potential compromise of the system's integrity and confidentiality. Users of the affected versions are encouraged to implement immediate security measures to mitigate the risk.
