Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Oreilly Subscribe
Total 10 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2000-0066 1 Oreilly 1 Website Professional 2022-08-17 5.0 MEDIUM N/A
WebSite Pro allows remote attackers to determine the real pathname of webdirectories via a malformed URL request.
CVE-1999-0177 1 Oreilly 1 Website 2022-08-17 7.5 HIGH N/A
The uploader program in the WebSite web server allows a remote attacker to execute arbitrary programs.
CVE-2000-0622 1 Oreilly 1 Website Professional 2017-10-09 10.0 HIGH N/A
Buffer overflow in Webfind CGI program in O'Reilly WebSite Professional web server 2.x allows remote attackers to execute arbitrary commands via a URL containing a long "keywords" parameter.
CVE-2001-0394 1 Oreilly 1 Website Pro 2017-10-09 5.0 MEDIUM N/A
Remote manager service in Website Pro 3.0.37 allows remote attackers to cause a denial of service via a series of malformed HTTP requests to the /dyn directory.
CVE-1999-0178 1 Oreilly 1 Oreilly Website 2017-10-09 7.5 HIGH N/A
Buffer overflow in the win-c-sample program (win-c-sample.exe) in the WebSite web server 1.1e allows remote attackers to execute arbitrary code via a long query string.
CVE-2001-0626 1 Oreilly 1 Website Professional 2017-10-09 7.5 HIGH N/A
O'Reilly Website Professional 2.5.4 and earlier allows remote attackers to determine the physical path to the root directory via a URL request containing a ":" character.
CVE-2000-0769 1 Oreilly 1 Website Pro 2016-10-17 7.5 HIGH N/A
O'Reilly WebSite Pro 2.3.7 installs the uploader.exe program with execute permissions for all users, which allows remote attackers to create and execute arbitrary files by directly calling uploader.exe.
CVE-2000-0623 1 Oreilly 1 Website Professional 2008-09-10 10.0 HIGH N/A
Buffer overflow in O'Reilly WebSite Professional web server 2.4 and earlier allows remote attackers to execute arbitrary commands via a long GET request or Referrer header.
CVE-1999-1180 1 Oreilly 2 Website, Website Pro 2008-09-10 5.0 MEDIUM N/A
O'Reilly WebSite 1.1e and Website Pro 2.0 allows remote attackers to execute arbitrary commands via shell metacharacters in an argument to (1) args.cmd or (2) args.bat.
CVE-2001-0743 1 Oreilly 1 Webboard 2008-09-05 5.0 MEDIUM N/A
Paging function in O'Reilly WebBoard Pager 4.10 allows remote attackers to cause a denial of service via a message with an escaped ' character followed by JavaScript commands.