CVE-2026-35503
CRITICAL
NVD
CVSS Score
9.8
Severity
CRITICAL
Published
Apr 24, 2026
Vendor
unknown
Description
A vulnerability in SenseLive X3050’s web management interface allows authentication logic to be performed entirely on the client side, relying on hardcoded values within browser-executed scripts rather than server-side verification. An attacker with access to the login page could retrieve these exposed parameters and gain unauthorized access to administrative functionality.