Medium severity5.3NVD Advisory· Published Jun 11, 2026
Naxclow IoT Platform
CVE-2026-42932
Description
Naxclow device identifiers use fixed manufacturing prefixes combined with sequential counters, producing a fully predictable and enumerable identifier space. Because the platform also exposes an endpoint that reveals the current identifier high-water mark, the active fleet can be enumerated.
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
News mentions
1- Naxclow IoT PlatformCISA ICS Advisories