Stats Digest Feeds
← Back to all CVEs

CVE-2026-86554

MEDIUM NVD
CVSS Score 4.3
Severity MEDIUM
Published Sep 20, 2026
Vendor unknown

Description

SmartLife app dynamically generates brand‑new SmartLife application authentication parameters within its runtime process. With the obtained SmartLife application authentication parameters, attackers can directly invoke the backend interface /account/verify.serv to determine whether a target email address is registered for a SmartLife account. If the account exists, the real backend account ID can also be retrieved.

References