CVE-2026-20761

Publication date

2026-02-20 15:32:09

Family

icscert

State

PUBLISHED

Description

A vulnerability exists in EnOcean SmartServer IoT version 4.60.009 and prior, which would allow remote attackers, in the LON IP-852 management messages, to send specially crafted IP-852 messages resulting in arbitrary OS command execution on the device.