Skip to content

Secure EU

Menu
  • Home
Menu

CVE-2026-20761 – EnOcean SmartServer IoT Command Injection

Posted on February 20, 2026
CVE ID : CVE-2026-20761

Published : Feb. 20, 2026, 3:32 p.m. | 30 minutes ago

Description : A vulnerability exists in EnOcean SmartServer IoT version 4.60.009 and
prior, which would allow remote attackers, in the LON IP-852 management
messages, to send specially crafted IP-852 messages resulting in
arbitrary OS command execution on the device.

Severity: 8.1 | HIGH

Visit the link for more details, such as CVSS details, affected products, timeline, and more…

©2026 Secure EU | Design: Newspaperly WordPress Theme