Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Sgi

First CVE: Oct 31, 1990Active for: 36 yearsTotal CVEs: 259
49.5
VTI Score
High

SGI's vulnerability footprint spans a focused set of enterprise-grade systems software and performance-management tools, yet the products occupy a prominent position in high-performance computing and Unix environments. The vendor's disclosures frequently acquire public exploit code, reflecting the historical appeal of SGI systems to both researchers and threat actors in specialized computing contexts. Vulnerabilities affecting SGI recur across products such as IRIX, ProPack, and Performance Co-Pilot through a pattern of memory-safety and information-disclosure weaknesses—including buffer overflows, out-of-bounds reads, and bounds-checking failures—that are characteristic of legacy native-code infrastructure software. Defenders managing SGI systems or embedded Performance Co-Pilot instances should treat disclosed vulnerabilities as requiring prompt review and patching due to the availability of exploit tooling; current exploitation activity and exposure counts are shown alongside this summary.

FAUCET AI Generated
259
Total CVEs
More Total CVEs than 100% of tracked vendors
0.8
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 12% of tracked vendors
6.4
Avg CVSS Score
Higher Avg CVSS Score than 38% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Sgi over time

Volume of CVEsAvg CVSS Base Score
First CVE
Oct 31, 1990
35 years ago
Most Recent CVE
Feb 28, 2024
877 days ago

Products(17 total)

Top CVEs

Signals from CVEs in this vendor scope (259 CVEs).

259 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2001-0797HIGH
Buffer overflow in login in various System V based operating systems allows remote attackers to execute arbitrary commands via a large number of arguments through services such as
Dec 12, 200110.088NOYES
CVE-2001-0800HIGH
lpsched in IRIX 6.5.13f and earlier allows remote attackers to execute arbitrary commands via shell metacharacters.
Dec 6, 200110.078NOYES
CVE-2003-0694HIGH
The prescan function in Sendmail 8.12.9 allows remote attackers to execute arbitrary code via buffer overflow attacks, as demonstrated using the parseaddr function in parseaddr.c.
Oct 6, 200310.073NOYES
CVE-2002-1318HIGH
Buffer overflow in samba 2.2.2 through 2.2.6 allows remote attackers to cause a denial of service and possibly execute arbitrary code via an encrypted password that causes the over
Dec 11, 200210.064NOYES
CVE-2001-0554HIGH
Buffer overflow in BSD-based telnetd telnet daemon on various operating systems allows remote attackers to execute arbitrary commands via a set of options including AYT (Are You Th
Aug 14, 200110.060NOYES
CVE-1999-0009HIGH
Inverse query buffer overflow in BIND 4.9 and BIND 8 Releases.
Apr 8, 199810.054NOYES
CVE-2010-1039HIGH
Format string vulnerability in the _msgout function in rpc.pcnfsd in IBM AIX 6.1, 5.3, and earlier; IBM VIOS 2.1, 1.5, and earlier; NFS/ONCplus B.11.31_09 and earlier on HP HP-UX B
May 20, 201010.053NOYES
CVE-2001-0247HIGH
Buffer overflows in BSD-based FTP servers allows remote attackers to execute arbitrary commands via a long pattern string containing a {} sequence, as seen in (1) g_opendir, (2) g_
Jun 18, 200110.052NOYES
CVE-1999-0003HIGH
Execute commands as root via buffer overflow in Tooltalk database server (rpc.ttdbserverd).
Apr 1, 199810.051NOYES
CVE-2004-0519MEDIUM
Multiple cross-site scripting (XSS) vulnerabilities in SquirrelMail 1.4.2 allow remote attackers to execute arbitrary script as other users and possibly steal authentication inform
Aug 18, 20046.846NOYES
View all 259 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products259 CVEs
12%
35%
52%
Severity distribution among all CVEs352,294 CVEs
45%
40%
11%
LowMediumHighCritical
Attack Vector
Local6 (2.3%)
Network7 (2.7%)
Unknown246 (95.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low13 (5.0%)
High0 (0.0%)
Unknown246 (95.0%)
User Interaction
None13 (5.0%)
Unknown246 (95.0%)
Required0 (0.0%)
Privileges Required
Low2 (0.8%)
High1 (0.4%)
None10 (3.9%)
Unknown246 (95.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (259 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
4 CVEs
1.5% of CVEs· 97th percentile
Nuclei
1 CVE
0.4% of CVEs· 95th percentile
ExploitDB
84 CVEs
32.4% of CVEs· 79th percentile

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Sgi.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Sgi — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Sgi's Products

View all 5 CNAs →

Top CWEs