CVE-2025-14750 Details
Description
The web application does not sufficiently verify inputs that are assumed to be immutable but are actually externally controllable. A low-privileged user can modify the parameters and potentially manipulate account-level privileges.
A vulnerability exists in the Weintek cMT X Series HMI EasyWeb Service, specifically in the cMT3072XH, cMT3072XH(T), cMT-SVRX-820, and cMT-CTRL01 versions. The issue arises because the web application fails to properly validate inputs that are presumed to be unchangeable but can be manipulated externally. This flaw allows a low-privileged user to alter parameters and potentially change account-level privileges. Successful exploitation could enable the user to gain full control of the device.
CISA recommends minimizing network exposure for all control system devices, ensuring they are not accessible from the internet. Control system networks and remote devices should be located behind firewalls and isolated from business networks. When remote access is necessary, use more secure methods such as Virtual Private Networks (VPNs), while keeping in mind that VPNs may have vulnerabilities and should be updated to the latest version. Organizations should perform a proper impact analysis and risk assessment before deploying defensive measures.
Metrics
CVSS 4.0 Severity and Vector Strings:
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
Volerion
Assessed Jan 22, 2026CISA-ADP
Assessed Jan 26, 2026References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
| URL | Source(s) | Tag(s) |
|---|---|---|
| https://www.cisa.gov/news-events/ics-advisories/icsa-26-022-05 | [email protected] | AdvisoryBundleRemedy |
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| CWE-472 | External Control of Assumed-Immutable Web Parameter | [email protected] |
Affected Products
| Product | Versions |
|---|---|
| Weintek cMT3072XH | cMT3072XH cMT3072XH(T) |
CPE
Remediation
| |
| Weintek cMT3072XH(T) | All versions |
CPE
Remediation
| |
| Weintek cMT-SVRX-820 | All versions |
CPE
Remediation
| |
| Weintek cMT-CTRL01 | All versions |
CPE
Remediation
| |
Change History
3 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Jun 17, 2026 | CVE Modified | [email protected] |
| Jun 17, 2026 | CVE Modified | CISA-ADP |
| Jan 22, 2026 | New CVE Received | [email protected] |
Volerion