VYPR
Vendor

Oreilly

Products
4
CVEs
10
Across products
11
Status
Private

Products

4

Recent CVEs

10
  • CVE-2000-0622Jul 19, 2000
    risk 0.04cvss epss 0.07

    Buffer overflow in Webfind CGI program in O'Reilly WebSite Professional web server 2.x allows remote attackers to execute arbitrary commands via a URL containing a long "keywords" parameter.

  • CVE-1999-0178Jan 1, 1997
    risk 0.04cvss epss 0.07

    Buffer overflow in the win-c-sample program (win-c-sample.exe) in the WebSite web server 1.1e allows remote attackers to execute arbitrary code via a long query string.

  • CVE-2001-0743Oct 18, 2001
    risk 0.03cvss epss 0.03

    Paging function in O'Reilly WebBoard Pager 4.10 allows remote attackers to cause a denial of service via a message with an escaped ' character followed by JavaScript commands.

  • CVE-2001-0626Aug 22, 2001
    risk 0.03cvss epss 0.03

    O'Reilly Website Professional 2.5.4 and earlier allows remote attackers to determine the physical path to the root directory via a URL request containing a ":" character.

  • CVE-2001-0394Aug 22, 2001
    risk 0.00cvss epss 0.01

    Remote manager service in Website Pro 3.0.37 allows remote attackers to cause a denial of service via a series of malformed HTTP requests to the /dyn directory.

  • CVE-2000-0769Oct 20, 2000
    risk 0.00cvss epss 0.01

    O'Reilly WebSite Pro 2.3.7 installs the uploader.exe program with execute permissions for all users, which allows remote attackers to create and execute arbitrary files by directly calling uploader.exe.

  • CVE-2000-0623Jul 17, 2000
    risk 0.00cvss epss 0.03

    Buffer overflow in O'Reilly WebSite Professional web server 2.4 and earlier allows remote attackers to execute arbitrary commands via a long GET request or Referrer header.

  • CVE-2000-0066Jan 13, 2000
    risk 0.00cvss epss 0.01

    WebSite Pro allows remote attackers to determine the real pathname of webdirectories via a malformed URL request.

  • CVE-1999-1180Feb 16, 1999
    risk 0.00cvss epss 0.02

    O'Reilly WebSite 1.1e and Website Pro 2.0 allows remote attackers to execute arbitrary commands via shell metacharacters in an argument to (1) args.cmd or (2) args.bat.

  • CVE-1999-0177Sep 1, 1997
    risk 0.00cvss epss 0.01

    The uploader program in the WebSite web server allows a remote attacker to execute arbitrary programs.