Hyper Estraier is a full-text search engine and indexing library used in content management and information retrieval systems, with vulnerability exposure concentrated in its core search product. The limited observed weakness signal reflects the narrowness of the vendor's footprint; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Hyper Estraier over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2006-3671HIGH Cross-site request forgery (CSRF) vulnerability in the communicate function in estmaster.c for Hyper Estraier before 1.3.3 allows remote attackers to perform unauthorized actions a | Jul 18, 2006 | 7.5 | 19 | NO | NO |
CVE-2005-3421MEDIUM estcmd in Hyper Estraier 1.0.1 on Windows systems allows remote attackers to read unauthorized files via a crafted search request for a filename that contains Unicode characters. | Nov 1, 2005 | 5.0 | 16 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Hyper Estraier.
Media articles that mention a CVE ID that affects a product developed by Hyper Estraier — matched by CVE ID, not by vendor name.