Our takeCISA reports active exploitation of insufficiently protected credentials in Rently Smart Home <=20.1.0 (CVSS 8.1). This lets attackers access sensitive information and override user permissions. Update now if you use it.Cyber Resilience desk
Sources (1)
- cisa_ics · cisa_ics
What this means for you — Security leader:Update Rently Smart Home to a version newer than 20.1.0 if you use it; CISA reports this insufficiently protected credentials vulnerability (CVSS 8.1) is actively exploited.
What this means for you — Lean IT orgs:If you use Rently Smart Home, update it immediately. Most lean teams don't run this system and can ignore the advisory.
What this means for you — MSP:Audit client environments for Rently Smart Home <=20.1.0 and update any found; CISA confirms active exploitation of the insufficiently protected credentials flaw.
What this means for you — Researcher:CISA ICSA-26-237-01 details an 8.1-rated insufficiently protected credentials vulnerability in Rently Smart Home <=20.1.0 confirmed exploited in the wild.