Rently Smart Home versions 20.1.0 and prior are vulnerable to an Insufficiently Protected Credentials vulnerability. This could allow an attacker to retrieve pins including the Master Pin, overriding standard user permissions.

Project Subscriptions

No data.

Advisories

No advisories yet.

Fixes

Solution

Rently has patched this vulnerability in late June. No user action is required. For more information, contact Rently ([email protected]).


Workaround

No workaround given by the vendor.

History

Wed, 26 Aug 2026 19:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Wed, 26 Aug 2026 13:45:00 +0000

Type Values Removed Values Added
Description Rently Smart Home versions 20.1.0 and prior are vulnerable to an Insufficiently Protected Credentials vulnerability. This could allow an attacker to retrieve pins including the Master Pin, overriding standard user permissions.
Title Insufficiently Protected Credentials in Rently Smart Home
Weaknesses CWE-522
References
Metrics cvssV3_1

{'score': 8.1, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N'}

cvssV4_0

{'score': 8.7, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N'}


Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: icscert

Published:

Updated: 2026-08-26T17:10:54.255Z

Reserved: 2026-08-18T16:32:03.997Z

Link: CVE-2026-75960

cve-icon Vulnrichment

Updated: 2026-08-26T17:10:51.171Z

cve-icon NVD

Status : Received

Published: 2026-08-26T14:17:13.220

Modified: 2026-08-26T18:17:01.453

Link: CVE-2026-75960

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-26T14:45:04Z

Weaknesses