CVE-2026-40431

Severity CVSS v4.0:
MEDIUM
Type:
CWE-319 Cleartext Transmission of Sensitive Information
Publication date:
24/04/2026
Last modified:
28/04/2026

Description

A vulnerability exists in SenseLive X3050’s web management interface due to its reliance on unencrypted HTTP for all administrative communication. Because management traffic, including authentication attempts and configuration data, is transmitted in cleartext, an attacker with access to the same network segment could intercept or observe sensitive operational information.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:senselive:x3500_firmware:1.523:*:*:*:*:*:*:*
cpe:2.3:h:senselive:x3500:-:*:*:*:*:*:*:*