


Perceptive Security
SOC/SIEM Consultancy

A vulnerability in SenseLive X3050’s management ecosystem allows unauthenticated discovery of deployed units through the vendor’s management protocol, enabling …
Published:
23 April 2026 at 22:00:00
Alert date:
24 April 2026 at 17:03:08
Source:
nvd.nist.gov
Mobile & IoT, Critical Infrastructure
A vulnerability in SenseLive X3050's management ecosystem allows unauthenticated discovery of deployed units through the vendor's management protocol. Attackers can identify device presence, identifiers, and management interfaces without credentials. The discovery functions are exposed by the underlying service rather than protected by authentication. An attacker on the same network segment can rapidly enumerate targeted devices. This represents a significant information disclosure vulnerability in industrial/IoT device management systems.
Technical details
Mitigation steps:
Affected products:
SenseLive X3050
Related links:
https://nvd.nist.gov/vuln/detail/CVE-2026-35064
https://github.com/cisagov/CSAF/blob/develop/csaf_files/OT/white/2026/icsa-26-111-12.json
https://senselive.io/contact
https://www.cisa.gov/news-events/ics-advisories/icsa-26-111-12
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
