HIGH
JUNG
CVE published 2026-02-15
CVE-2026-26369
AI-assisted PatchSiren debrief based on the supplied source corpus. The CVE record was published on 2026-02-15T16:15:54.407Z and has not been modified since then. The eNet SMART HOME server contains a privilege escalation vulnerability due to insufficient authorization checks in the setUserGroup JSON-RPC method, affecting versions 2.2.1 and 2.3.1. A low-privileged user can send a crafted POST request to / [truncated]