RSS   Vulnerabilities for '1050ap lan acess point'   RSS

2002-07-26
 
CVE-2002-0398

 

 
Red-M 1050 (Bluetooth Access Point) PPP server allows bonded users to cause a denial of service and possibly execute arbitrary code via a long user name.

 
 
CVE-2002-0397

 

 
Red-M 1050 (Bluetooth Access Point) publicizes its name, IP address, and other information in UDP packets to a broadcast address, which allows any system on the network to obtain potentially sensitive information about the Access Point device by monitoring UDP port 8887.

 
 
CVE-2002-0396

 

 
The web management server for Red-M 1050 (Bluetooth Access Point) does not use session-based credentials to authenticate users, which allows attackers to connect to the server from the same IP address as a user who has already established a session.

 
 
CVE-2002-0395

 

 
The TFTP server for Red-M 1050 (Bluetooth Access Point) can not be disabled and makes it easier for remote attackers to crack the administration password via brute force methods.

 
 
CVE-2002-0394

 

 
Red-M 1050 (Bluetooth Access Point) uses case insensitive passwords, which makes it easier for attackers to conduct a brute force guessing attack due to the smaller space of possible passwords.

 
 
CVE-2002-0393

 

 
Buffer overflow in Red-M 1050 (Bluetooth Access Point) management web interface allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long administration password.

 

 >>> Vendor: Red-m 2 Products
1050ap lan acess point
Red-alert


Copyright 2024, cxsecurity.com

 

Back to Top