eNet SMART HOME server是德国eNet公司的一个无线智能家居控制台。 eNet SMART HOME server 2.2.1版本和2.3.1版本存在安全漏洞,该漏洞源于resetUserPassword JSON-RPC方法缺少授权,可能导致任意账户密码被重置。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| JUNG | eNet SMART HOME server | 2.3.1 (46841) | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-26366 | 9.8 CRITICAL | JUNG eNet SMART HOME server 2.2.1/2.3.1 Use of Default Credentials |
| CVE-2026-26369 | 8.8 HIGH | JUNG eNet SMART HOME server 2.2.1/2.3.1 Privilege Escalation via setUserGroup |
| CVE-2026-26367 | 8.1 HIGH | JUNG eNet SMART HOME server 2.2.1/2.3.1 Arbitrary User Deletion via deleteUserAccount |
No comments yet