Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Solution
SenseLive did not respond to CISA's requests to coordinate. Affected users are encouraged to reach out to SenseLive for more information. https://senselive.io/contact
Tracking
Sign in to view the affected projects.
No advisories yet.
Tue, 28 Apr 2026 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Senselive x3500
Senselive x3500 Firmware |
|
| CPEs | cpe:2.3:h:senselive:x3500:-:*:*:*:*:*:*:* cpe:2.3:o:senselive:x3500_firmware:1.523:*:*:*:*:*:*:* |
|
| Vendors & Products |
Senselive x3500
Senselive x3500 Firmware |
Tue, 28 Apr 2026 09:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Senselive
Senselive x3050 |
|
| Vendors & Products |
Senselive
Senselive x3050 |
Fri, 24 Apr 2026 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 24 Apr 2026 00:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability exists in SenseLive X3050’s web management interface in which password updates are not reliably applied due to improper handling of credential changes on the backend. After the device undergoes a factory restore using the SenseLive Config 2.0 tool, the interface may indicate that the password update was successful; however, the system may continue to accept the previous or default credentials, demonstrating that the password-change process is not consistently enforced. Even after a factory reset, attempted password changes may fail to propagate correctly. | |
| Title | SenseLive X3050 Insufficiently Protected Credentials | |
| Weaknesses | CWE-522 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: icscert
Published:
Updated: 2026-04-24T18:18:50.532Z
Reserved: 2026-04-14T16:05:54.161Z
Link: CVE-2026-39462
Updated: 2026-04-24T16:50:30.960Z
Status : Analyzed
Published: 2026-04-24T00:16:28.333
Modified: 2026-04-28T19:04:40.970
Link: CVE-2026-39462
No data.
OpenCVE Enrichment
Updated: 2026-04-28T14:45:16Z