Inktomi developed search and content-delivery infrastructure products, including its search engine and Traffic Server proxy platform, that saw deployment in web-scale and media environments. The observed vulnerabilities in this vendor's portfolio reflect the broad categorization typical of early vulnerability disclosures and do not present a clear structural weakness pattern; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Inktomi over time
Signals from CVEs in this vendor scope (4 CVEs).
4 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2002-1013HIGH Buffer overflow in traffic_manager for Inktomi Traffic Server 4.0.18 through 5.2.2, Traffic Edge 1.1.2 and 1.5.0, and Media-IXT 3.0.4 allows local users to gain root privileges via | Oct 4, 2002 | 7.2 | 27 | NO | YES |
CVE-2003-0292MEDIUM Cross-site scripting (XSS) vulnerability in Inktomi Traffic-Server 5.5.1 allows remote attackers to insert arbitrary web script or HTML into an error page that appears to come from | Jun 16, 2003 | 6.8 | 18 | NO | NO |
CVE-2006-6658MEDIUM Inktomi Search 4.1.4 allows remote attackers to obtain sensitive information via direct requests with missing parameters to (1) help/header.html, (2) thesaurus.html, and (3) topics | Dec 20, 2006 | 5.0 | 15 | NO | NO |
CVE-2000-1019MEDIUM Search engine in Ultraseek 3.1 and 3.1.10 (aka Inktomi Search) allows remote attackers to cause a denial of service via a malformed URL. | Dec 11, 2000 | 5.0 | 15 | NO | NO |
Signals from CVEs in this vendor scope (4 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Inktomi.
Media articles that mention a CVE ID that affects a product developed by Inktomi — matched by CVE ID, not by vendor name.