CVE Feed

    Dashboard / CVE / CVE-2026-40620

    CVE-2026-40620

    A vulnerability in SenseLive X3050’s embedded management service allows full administrative control to be established without any form of authentication or authorization on the SenseLive config application. The service accepts management connections from any reachable host, enabling unrestricted modification of critical configuration parameters, operational modes, and device state through a vendor-supplied or compatible client.

    Published:Apr 24, 2026
    Last Modified:Apr 28, 2026
    EPS:Apr 24, 2026
    EPSS Score:0.00067
    CVSS Score:9.8

    Affected Products

    Vendor
    Senselive
    Product
    X3050
    Vendor
    Senselive
    Product
    X3500
    Vendor
    Senselive
    Product
    X3500 Firmware

    Exploits

    No exploit reference

    Related CVEs

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High