Jung-group Enet Smart Home Vulnerabilities

3 advisories affecting Jung-group Enet Smart Home

3

Total CVEs

2

Critical

1

High

CVE-2026-26366

Feb 15, 2026

Critical (9.8)

eNet SMART HOME server 2.2.1 and 2.3.1 ships with default credentials (user:user, admin:admin) that remain active after installation and commissioning without enforcing a mandatory password change. Un...

Read Advisory

CVE-2026-26369

Feb 15, 2026

Critical (9.8)

eNet SMART HOME server 2.2.1 and 2.3.1 contains a privilege escalation vulnerability due to insufficient authorization checks in the setUserGroup JSON-RPC method. A low-privileged user (UG_USER) can s...

Read Advisory

CVE-2026-26368

Feb 15, 2026

High (8.8)

eNet SMART HOME server 2.2.1 and 2.3.1 contains a missing authorization vulnerability in the resetUserPassword JSON-RPC method that allows any authenticated low-privileged user (UG_USER) to reset the ...

Read Advisory

Never Miss a Critical Alert

CVE advisories, breach reports, and threat intel — delivered daily to your inbox.