CVE-2026-35503
CRITICAL SEVERITYCVSS Score & Metrics
Base Score
9.8 / 10
Vector String
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Vulnerability Description
A vulnerability in SenseLive X3050’s web management interface allows authentication logic to be performed entirely on the client side, relying on hardcoded values within browser-executed scripts rather than server-side verification. An attacker with access to the login page could retrieve these exposed parameters and gain unauthorized access to administrative functionality.
Vulnerability Details
Published Date
Last Modified
CWE ID
CWE-798
Source
NVD
Vendor
SenseLive
Product
X3050
Discussion (0)
Add Comment
No comments yet. Be the first!