CVE-2026-35503
EUVD-2026-2535924.04.2026, 00:16
A vulnerability in SenseLive X3050’s web management interface allows authentication logic to be performed entirely on the client side, relying on hardcoded values within browser-executed scripts rather than server-side verification. An attacker with access to the login page could retrieve these exposed parameters and gain unauthorized access to administrative functionality.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| senselive | x3500_firmware | 1.523 |
𝑥
= Vulnerable software versions