Description

A vulnerability exists in EnOcean SmartServer IoT version 4.60.009 and prior, which would allow remote attackers, in the LON IP-852 management messages, to send specially crafted IP-852 messages resulting in arbitrary OS command execution on the device.

INFO

Published Date :

2026-02-20T15:32:09.969Z

Last Modified :

2026-02-20T20:09:15.218Z

Source :

icscert
AFFECTED PRODUCTS

The following products are affected by CVE-2026-20761 vulnerability.

Vendors Products
Enocean Edge
  • Smartserver Iot

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact