Red Gate develops database administration and .NET development tools, including SQL monitoring, code reflection, and assembly obfuscation products that serve infrastructure and development teams. Its vulnerability footprint, though modest, centers on these specialized tools where weaknesses have historically emerged around input handling and privilege boundaries. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Red Gate over time
Signals from CVEs in this vendor scope (6 CVEs).
6 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2015-9098CRITICAL In Redgate SQL Monitor before 3.10 and 4.x before 4.2, a remote attacker can gain unauthenticated access to the Base Monitor, resulting in the ability to execute arbitrary SQL comm | Jun 22, 2017 | 9.8 | 48 | NO | YES |
CVE-2022-47870MEDIUM A Cross Site Scripting (XSS) vulnerability in the web SQL monitor login page in Redgate SQL Monitor 12.1.31.893 allows remote attackers to inject arbitrary web Script or HTML via t | Apr 4, 2023 | 6.1 | 30 | NO | YES |
CVE-2022-47542HIGH Red Gate SQL Monitor 11.0.14 through 12.1.46 has Incorrect Access Control, exploitable remotely for Escalation of Privileges. | Mar 30, 2023 | 8.8 | 27 | NO | NO |
CVE-2018-14581HIGH Redgate .NET Reflector before 10.0.7.774 and SmartAssembly before 6.12.5 allow attackers to execute code by decompiling a compiled .NET object (such as a DLL or EXE file) with a sp | Jul 31, 2018 | 7.8 | 24 | NO | NO |
CVE-2020-9318HIGH Red Gate SQL Monitor 9.0.13 through 9.2.14 allows an administrative user to perform a SQL injection attack by configuring the SNMP alert settings in the UI. This is fixed in 9.2.15 | Feb 20, 2020 | 7.2 | 22 | NO | NO |
CVE-2020-15526MEDIUM In Redgate SQL Monitor 7.1.4 through 10.1.6 (inclusive), the scope for disabling some TLS security certificate checks can extend beyond that defined by various options on the Confi | Jul 9, 2020 | 5.9 | 16 | NO | NO |
Signals from CVEs in this vendor scope (6 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Red Gate.
Media articles that mention a CVE ID that affects a product developed by Red Gate — matched by CVE ID, not by vendor name.