CVE-2026-82929
— UNSCOREDPublished 2026-09-28 · Updated 2026-09-28
AI analysis for this CVE has not been generated yet. Raw NVD data is shown below.
NVD description
mH-DEVELOPER smart home module uses the same hard-coded SSH host keys on every device, with no per-device key generation. An attacker who extracts these keys from the firmware can set up a rogue SSH server that clients will trust without warning, enabling man-in-the-middle attacks and credential interception. This issue was fixed in version 3.0.30
Weaknesses
CWE-321
All references
Source data: NVD (nvd.nist.gov), public domain. Exploit-DB.ai adds local AI analysis for defensive use only.
Related CVEs
- LOWCVE-2026-102241PoC
- HIGHCVE-2026-103055PoC
- CRITICALCVE-2026-14804
- HIGHCVE-2026-18154
- HIGHCVE-2026-18181
- CRITICALCVE-2026-18753
- CRITICALCVE-2026-18754
- HIGHCVE-2026-28326
Related by shared AI tags and CWE weakness class. Browse the full archive.