Cross-site request forgery (CSRF) vulnerability in the communicate function in estmaster.c for Hyper Estraier before 1.3.3 allows remote attackers to perform unauthorized actions as other users via unknown vectors. This vulnerability is addressed in the following product release:
Hyper Estraier, Hyper Estraier, 1.3.3
Publication date: Tue, 18 Jul 2006 20:47:00 +0000