Rently Smart Home

Summary

Rently Smart Home versions 20.1.0 and prior are vulnerable to an Insufficiently Protected Credentials vulnerability (CVE-2026-75960). Successful exploitation allows an attacker to retrieve sensitive information like the Master Pin, overriding user permissions. Rently has patched this vulnerability, and no user action is required.

IFF Assessment

FOE

The vulnerability disclosed allows attackers to retrieve sensitive credentials and override user permissions, posing a direct threat to the security of Rently Smart Home systems.

Severity

8.1 High

Defender Context

This vulnerability highlights the importance of robust credential management in IoT devices, especially those in critical infrastructure sectors like commercial facilities and IT. Defenders should be aware of the risks associated with poorly protected credentials and advocate for secure development practices and timely patching in connected devices.

Read Full Story →