Vulnerabilities (CVE)

Filtered by vendor Oreilly Subscribe
Total 10 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2000-0622 1 Oreilly 1 Website Professional 2023-12-10 10.0 HIGH N/A
Buffer overflow in Webfind CGI program in O'Reilly WebSite Professional web server 2.x allows remote attackers to execute arbitrary commands via a URL containing a long "keywords" parameter.
CVE-1999-1180 1 Oreilly 2 Website, Website Pro 2023-12-10 5.0 MEDIUM N/A
O'Reilly WebSite 1.1e and Website Pro 2.0 allows remote attackers to execute arbitrary commands via shell metacharacters in an argument to (1) args.cmd or (2) args.bat.
CVE-2001-0743 1 Oreilly 1 Webboard 2023-12-10 5.0 MEDIUM N/A
Paging function in O'Reilly WebBoard Pager 4.10 allows remote attackers to cause a denial of service via a message with an escaped ' character followed by JavaScript commands.
CVE-2001-0626 1 Oreilly 1 Website Professional 2023-12-10 7.5 HIGH N/A
O'Reilly Website Professional 2.5.4 and earlier allows remote attackers to determine the physical path to the root directory via a URL request containing a ":" character.
CVE-2001-0394 1 Oreilly 1 Website Pro 2023-12-10 5.0 MEDIUM N/A
Remote manager service in Website Pro 3.0.37 allows remote attackers to cause a denial of service via a series of malformed HTTP requests to the /dyn directory.
CVE-1999-0178 1 Oreilly 1 Oreilly Website 2023-12-10 7.5 HIGH N/A
Buffer overflow in the win-c-sample program (win-c-sample.exe) in the WebSite web server 1.1e allows remote attackers to execute arbitrary code via a long query string.
CVE-1999-0177 1 Oreilly 1 Website 2023-12-10 7.5 HIGH N/A
The uploader program in the WebSite web server allows a remote attacker to execute arbitrary programs.
CVE-2000-0623 1 Oreilly 1 Website Professional 2023-12-10 10.0 HIGH N/A
Buffer overflow in O'Reilly WebSite Professional web server 2.4 and earlier allows remote attackers to execute arbitrary commands via a long GET request or Referrer header.
CVE-2000-0066 1 Oreilly 1 Website Professional 2023-12-10 5.0 MEDIUM N/A
WebSite Pro allows remote attackers to determine the real pathname of webdirectories via a malformed URL request.
CVE-2000-0769 1 Oreilly 1 Website Pro 2023-12-10 7.5 HIGH N/A
O'Reilly WebSite Pro 2.3.7 installs the uploader.exe program with execute permissions for all users, which allows remote attackers to create and execute arbitrary files by directly calling uploader.exe.