SenseLive X3050 Web Management Interface Vulnerability Allowing Unsafe Configuration Changes
Vulnerability
A vulnerability exists in the web management interface of the SenseLive X3050 device, allowing critical system and network configuration parameters to be altered without adequate validation or safety controls. This flaw enables the modification of essential settings such as IP addresses, watchdog timers, reconnect intervals, and service ports, potentially leading to unsupported or unsafe values. These unauthorized changes can disrupt core device functions and recovery mechanisms, causing instability or making the device persistently unavailable.
Impact
Exploitation of this vulnerability could allow an attacker to gain complete control over the affected device.
Remediation
SenseLive has not responded to CISA's requests for coordination. Affected users are encouraged to contact SenseLive for more information.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
