Beaconmedaes produces medical gas delivery and air system equipment, with vulnerabilities centered on its Scroll Medical Air Systems product and firmware, where the exposure reflects a focus on access-control and credential-handling weaknesses. The recurring pattern—insufficiently protected credentials, direct request manipulation, and plaintext password storage—is typical of embedded medical devices where authentication and session management may lack maturity; current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Beaconmedaes over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2018-7510CRITICAL In the web application in BeaconMedaes TotalAlert Scroll Medical Air Systems running software versions prior to 4107600010.23, passwords are presented in plaintext in a file that i | Jun 6, 2018 | 9.8 | 31 | NO | NO |
CVE-2018-7518CRITICAL In TotalAlert Web Application in BeaconMedaes Scroll Medical Air Systems prior to v4107600010.23, an attacker with network access to the integrated web server could retrieve defaul | May 24, 2018 | 9.8 | 29 | NO | NO |
CVE-2018-7526HIGH In TotalAlert Web Application in BeaconMedaes Scroll Medical Air Systems prior to v4107600010.23, by accessing a specific uniform resource locator (URL) on the webserver, a malicio | May 24, 2018 | 7.5 | 24 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Beaconmedaes.
Media articles that mention a CVE ID that affects a product developed by Beaconmedaes — matched by CVE ID, not by vendor name.