Red M manufactures a focused set of network access and alerting products, including the 1050AP LAN access point and Red Alert platform, that serve specialized infrastructure roles. The vendor's vulnerability exposure reflects a narrow but strategically positioned product portfolio within the networking and monitoring segments. Current exploitation activity, severity distribution, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Red M over time
Signals from CVEs in this vendor scope (9 CVEs).
9 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2002-0393HIGH Buffer overflow in Red-M 1050 (Bluetooth Access Point) management web interface allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long | Jul 26, 2002 | 10.0 | 33 | NO | NO |
CVE-2002-0398HIGH Red-M 1050 (Bluetooth Access Point) PPP server allows bonded users to cause a denial of service and possibly execute arbitrary code via a long user name. | Jul 26, 2002 | 10.0 | 31 | NO | NO |
CVE-2002-0394HIGH Red-M 1050 (Bluetooth Access Point) uses case insensitive passwords, which makes it easier for attackers to conduct a brute force guessing attack due to the smaller space of possib | Jul 26, 2002 | 10.0 | 30 | NO | NO |
CVE-2002-0395HIGH The TFTP server for Red-M 1050 (Bluetooth Access Point) can not be disabled and makes it easier for remote attackers to crack the administration password via brute force methods. | Jul 26, 2002 | 10.0 | 30 | NO | NO |
CVE-2004-2078MEDIUM Red-M Red-Alert 2.7.5 with software 3.1 build 24 allows remote attackers to cause a denial of service (reboot and loss of logged events) via a long request to TCP port 80, possibly | Feb 9, 2004 | 5.0 | 24 | NO | YES |
CVE-2002-0396HIGH The web management server for Red-M 1050 (Bluetooth Access Point) does not use session-based credentials to authenticate users, which allows attackers to connect to the server from | Jul 26, 2002 | 7.5 | 24 | NO | NO |
CVE-2004-2079HIGH Red-M Red-Alert 2.7.5 with software 3.1 build 24 binds authentication to IP addresses, which allows remote attackers to bypass authentication by connecting from the same IP address | Feb 9, 2004 | 7.5 | 20 | NO | NO |
CVE-2004-2080MEDIUM Red-M Red-Alert 2.7.5 with software 3.1 build 24 converts multiple spaces in a Service Set Identifier (SSID) to a single space, which prevents Red-Alert from correctly identifying | Feb 9, 2004 | 5.0 | 19 | NO | NO |
CVE-2002-0397MEDIUM Red-M 1050 (Bluetooth Access Point) publicizes its name, IP address, and other information in UDP packets to a broadcast address, which allows any system on the network to obtain p | Jul 26, 2002 | 5.0 | 15 | NO | NO |
Signals from CVEs in this vendor scope (9 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Red M.
Media articles that mention a CVE ID that affects a product developed by Red M — matched by CVE ID, not by vendor name.