Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Compaq

First CVE: Jun 3, 1998Active for: 28 yearsTotal CVEs: 42
44.1
VTI Score
High

Compaq's vulnerability profile centers on a modest portfolio of infrastructure and management products including Tru64, various management agents, and Insight Manager components that address systems administration and monitoring functions. The recurring weakness classes cluster around authentication and input-handling issues—improper authentication mechanisms, cross-site scripting flaws, and insufficient rate-limiting on authentication attempts—reflecting the web-facing and access-control demands of administrative interfaces. Notably, vulnerabilities in this vendor's products have frequently acquired public exploit code, consistent with the high-value nature of systems-management and remote-access tools as targets for infrastructure compromise. Defenders should prioritize inventory and patching of affected management agent and platform components, particularly in network-facing deployments where authentication weaknesses carry elevated risk; live severity, exploitation activity, and detailed exposure counts are shown alongside this summary.

FAUCET AI Generated
42
Total CVEs
More Total CVEs than 98% of tracked vendors
0.1
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 1% of tracked vendors
6.6
Avg CVSS Score
Higher Avg CVSS Score than 42% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Compaq over time

Volume of CVEsAvg CVSS Base Score
First CVE
Jun 3, 1998
28 years ago
Most Recent CVE
Mar 31, 2008
6,689 days ago

Products(44 total)

Top CVEs

Signals from CVEs in this vendor scope (42 CVEs).

42 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2000-1209HIGH
The "sa" account is installed with a default null password on (1) Microsoft SQL Server 2000, (2) SQL Server 7.0, and (3) Data Engine (MSDE) 1.0, including third party packages that
Aug 12, 200210.089NOYES
CVE-2003-0201HIGH
Buffer overflow in the call_trans2open function in trans2.c for Samba 2.2.x before 2.2.8a, 2.0.10 and earlier 2.0.x versions, and Samba-TNG before 0.3.2, allows remote attackers to
May 5, 200310.088NOYES
CVE-2003-0694HIGH
The prescan function in Sendmail 8.12.9 allows remote attackers to execute arbitrary code via buffer overflow attacks, as demonstrated using the parseaddr function in parseaddr.c.
Oct 6, 200310.073NOYES
CVE-2003-0161HIGH
The prescan() function in the address parser (parseaddr.c) in Sendmail before 8.12.9 does not properly handle certain conversions from char and int types, which can cause a length
Apr 2, 200310.063NOYES
CVE-2002-0679HIGH
Buffer overflow in Common Desktop Environment (CDE) ToolTalk RPC database server (rpc.ttdbserverd) allows remote attackers to execute arbitrary code via an argument to the _TT_CREA
Sep 5, 200210.042NONO
CVE-2003-0196HIGH
Multiple buffer overflows in Samba before 2.2.8a may allow remote attackers to execute arbitrary code or cause a denial of service, as discovered by the Samba team and a different
May 5, 200310.035NONO
CVE-2002-2002HIGH
Buffer overflow in libc in Compaq Tru64 4.0F, 5.0, 5.1 and 5.1A allows attackers to execute arbitrary code via long (1) LANG and (2) LOCPATH environment variables.
Dec 31, 20027.533NONO
CVE-2001-1093HIGH
Buffer overflow in msgchk in Digital UNIX 4.0G and earlier allows local users to execute arbitrary code via a long command line argument.
Sep 10, 20017.229NOYES
CVE-2001-0840HIGH
Buffer overflow in Compaq Insight Manager XE 2.1b and earlier allows remote attackers to execute arbitrary code via (1) SNMP and (2) DMI.
Dec 6, 200110.028NONO
CVE-2002-2422MEDIUM
Cross-site scripting (XSS) vulnerability in Compaq Insight Management Agents 2.0, 2.1, 3.6.0, 4.2 and 4.3.7 allows remote attackers to inject arbitrary web script or HTML via a URL
Dec 31, 20024.327NOYES
View all 42 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products42 CVEs
43%
52%
Severity distribution among all CVEs352,231 CVEs
45%
40%
11%
LowMediumHigh
Attack Vector
Local0 (0.0%)
Network1 (2.4%)
Unknown41 (97.6%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low1 (2.4%)
High0 (0.0%)
Unknown41 (97.6%)
User Interaction
None1 (2.4%)
Unknown41 (97.6%)
Required0 (0.0%)
Privileges Required
Low0 (0.0%)
High0 (0.0%)
None1 (2.4%)
Unknown41 (97.6%)

Exploit Exposure

Signals from CVEs in this vendor scope (42 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
3 CVEs
7.1% of CVEs· 98th percentile
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
10 CVEs
23.8% of CVEs· 78th percentile

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Compaq.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Compaq — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Compaq's Products

View all 1 CNAs →

Top CWEs