📦

insight_management_agent

Vendor: compaq

Actively Exploited 0 CISA KEV List
PoC / Exploits 2 Code Available
Total RCEs 1 Remote Access
Total CVEs 8 Total Indexed
Avg. EPSS 1.74% Exploit Prob.
Latest CVE CVE-2002-2422 Dec 31

Security Vulnerability Index

Page 1 / 1
4.3 CVSS
CVE-2002-2422
Exploit Found

Cross-site scripting (XSS) vulnerability in Compaq Insight Management Agents 2.0, 2.1, 3.6.0, 4.2 and 4.3.7 allows remote attackers to inject arbitrary web script or HTML via a URL, which inserts the script into the resulting error message.

EPSS: 0.41%
10.0 CVSS

Buffer overflow in cpqlogin.htm in web-enabled agents for various Compaq management software products such as Insight Manager and Management Agents allows remote attackers to execute arbitrary commands via a long user name.

EPSS: 2.03%
7.5 CVSS

BMC Patrol component, when installed with Compaq Insight Management Agent 4.23 and earlier, or Management Agents for Servers 4.40 and earlier, creates a PFCUser account with a default password and potentially dangerous privileges.

EPSS: 0.74%
6.4 CVSS

Denial of service in Compaq Management Agents and the Compaq Survey Utility via a long string sent to port 2301.

EPSS: 0.50%
5.0 CVSS
CVE-1999-0771
Exploit Found

The web components of Compaq Management Agents and the Compaq Survey Utility allow a remote attacker to read arbitrary files via a .. (dot dot) attack.

EPSS: 5.03%