Altavista operates search and intranet search products with a narrow documented vulnerability footprint. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Altavista over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2000-0039MEDIUM AltaVista search engine allows remote attackers to read files above the document root via a .. (dot dot) in the query.cgi CGI program. | Dec 29, 1999 | 5.0 | 26 | NO | YES |
CVE-2007-3486MEDIUM Cross-site scripting (XSS) vulnerability in AltaVista search engine allows remote attackers to inject arbitrary web script or HTML via the text parameter to the default URI. | Jun 28, 2007 | 4.3 | 14 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Altavista.
Media articles that mention a CVE ID that affects a product developed by Altavista — matched by CVE ID, not by vendor name.