IM
IronMonkey Threat Research
‹ Back to ICS Advisories

Mint Workbench I Path traversal Vulnerability

HIGH
CVSS 7.5
Date 2026-09-22T00:30:00+00:00
Source abb-psirt
Published by ABB PSIRT

// Description

A local attacker who successfully exploited this vulnerability could gain elevated privileges by Path Traversal, arbitrarily reading files of system, to cause confidentiality impact of system files.

// Vulnerabilities (1)

CVE ID CVSS Score Severity Description
CVE-2026-19438 7.5 high
CVE-2026-19438. A vulnerability exists in the Mint Workbench I, the versions listed as affected in the advisory. A local attacker who successfully exploited this vulnerability could gain elevated privileges by Path Traversal, arbitrarily reading files of system, to cause confidentiality impact of system files.

// Remediations (2)

Mitigation: Mint Workbench I 5876 and the versions before, are impacted, customers who use these products, shoul
Mint Workbench I 5876 and the versions before, are impacted, customers who use these products, should: - Disable Service MWI http when it is not in active use. - Restrict physical machine access to authorized personnel only. - Avoid storing sensitive or confidential data on any hosts running service MWI http. - Enable User Account Control (UAC) to block unauthorized privilege escalation attempts. These actions above are the only measures available. No further patch will be released because this product reaches end-of-life globally (out of China) by the end of 2026 and in China by the end of 2027. To exploit the vulnerability the attacker needs to have local access to the machine beforehand and have file write access in the path. Please also refer to section “General security recommendations” for further advise on how to keep your system secure.
Workaround: Mint Workbench I 5876 and the versions before, are impacted, customers who use these products, shoul
Mint Workbench I 5876 and the versions before, are impacted, customers who use these products, should: - Disable Service MWI http when it is not in active use. - Restrict physical machine access to authorized personnel only. - Avoid storing sensitive or confidential data on any hosts running service MWI http. - Enable User Account Control (UAC) to block unauthorized privilege escalation attempts.

// References