Rently Smart Home
Summary
Rently Smart Home versions 20.1.0 and prior are vulnerable to an Insufficiently Protected Credentials vulnerability (CVE-2026-75960). Successful exploitation allows an attacker to retrieve sensitive information like the Master Pin, overriding user permissions. Rently has patched this vulnerability, and no user action is required.
IFF Assessment
The vulnerability disclosed allows attackers to retrieve sensitive credentials and override user permissions, posing a direct threat to the security of Rently Smart Home systems.
Severity
Defender Context
This vulnerability highlights the importance of robust credential management in IoT devices, especially those in critical infrastructure sectors like commercial facilities and IT. Defenders should be aware of the risks associated with poorly protected credentials and advocate for secure development practices and timely patching in connected devices.