Vulnerabilities > Inktomi

DATE CVE VULNERABILITY TITLE RISK
2006-12-20 CVE-2006-6658 Information Disclosure vulnerability in Inktomi Search 4.1.4
Inktomi Search 4.1.4 allows remote attackers to obtain sensitive information via direct requests with missing parameters to (1) help/header.html, (2) thesaurus.html, and (3) topics.html, which leak the installation path in the resulting error message, a related issue to CVE-2006-5970.
network
low complexity
inktomi
5.0
2003-06-16 CVE-2003-0292 Cross-Site Scripting vulnerability in Inktomi Traffic-Server 5.5.1
Cross-site scripting (XSS) vulnerability in Inktomi Traffic-Server 5.5.1 allows remote attackers to insert arbitrary web script or HTML into an error page that appears to come from the domain that the client is visiting, aka "Man-in-the-Middle" XSS.
network
inktomi
6.8
2002-10-04 CVE-2002-1013 Buffer Overflow vulnerability in Inktomi Media-Ixt, Traffic Edge and Traffic Server
Buffer overflow in traffic_manager for Inktomi Traffic Server 4.0.18 through 5.2.2, Traffic Edge 1.1.2 and 1.5.0, and Media-IXT 3.0.4 allows local users to gain root privileges via a long -path argument.
local
low complexity
inktomi
7.2
2000-12-11 CVE-2000-1019 Unspecified vulnerability in Inktomi Search Software 3.0/3.1.10
Search engine in Ultraseek 3.1 and 3.1.10 (aka Inktomi Search) allows remote attackers to cause a denial of service via a malformed URL.
network
low complexity
inktomi
5.0