oreilly records
10 published records for vendor oreilly.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 6
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Records by year
Bar: total · dark part: CISA KEV.
Attack profile
All records
10 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
44Plan | CVE-2000-0622Proof of concept | Buffer overflow in Webfind CGI program in O'Reilly WebSite Professional web server 2.x allows remote attackers to execute arbitrary commandsoreilly · website professional | Critical10.0 | — | 13.0% | Jul 19, 2000 |
42Plan | CVE-2000-0623No exploit | Buffer overflow in O'Reilly WebSite Professional web server 2.4 and earlier allows remote attackers to execute arbitrary commands via a longoreilly · website professional | Critical10.0 | — | 5.3% | Jul 17, 2000 |
34Monitor | CVE-1999-0178Proof of concept | Buffer overflow in the win-c-sample program (win-c-sample.exe) in the WebSite web server 1.1e allows remote attackers to execute arbitrary coreilly · oreilly website | High7.5 | — | 12.5% | Jan 1, 1997 |
32Monitor | CVE-2001-0626Proof of concept | O'Reilly Website Professional 2.5.4 and earlier allows remote attackers to determine the physical path to the root directory via a URL requeoreilly · website professional | High7.5 | — | 7.0% | Aug 22, 2001 |
31Monitor | CVE-1999-0177No exploit | The uploader program in the WebSite web server allows a remote attacker to execute arbitrary programs.oreilly · website | High7.5 | — | 2.0% | Sep 1, 1997 |
30Monitor | CVE-2000-0769No exploit | O'Reilly WebSite Pro 2.3.7 installs the uploader.exe program with execute permissions for all users, which allows remote attackers to createoreilly · website pro | High7.5 | — | 1.4% | Oct 20, 2000 |
22Monitor | CVE-2001-0743Proof of concept | Paging function in O'Reilly WebBoard Pager 4.10 allows remote attackers to cause a denial of service via a message with an escaped ' charactoreilly · webboard | Medium5.0 | — | 5.2% | Oct 18, 2001 |
21Monitor | CVE-2000-0066No exploit | WebSite Pro allows remote attackers to determine the real pathname of webdirectories via a malformed URL request.oreilly · website professional | Medium5.0 | — | 2.0% | Jan 13, 2000 |
21Monitor | CVE-1999-1180No exploit | O'Reilly WebSite 1.1e and Website Pro 2.0 allows remote attackers to execute arbitrary commands via shell metacharacters in an argument to (oreilly · website | Medium5.0 | — | 1.7% | Feb 16, 1999 |
20Monitor | CVE-2001-0394No exploit | Remote manager service in Website Pro 3.0.37 allows remote attackers to cause a denial of service via a series of malformed HTTP requests tooreilly · website pro | Medium5.0 | — | 1.6% | Aug 22, 2001 |
- CVE-2000-062244Plan
Buffer overflow in Webfind CGI program in O'Reilly WebSite Professional web server 2.x allows remote attackers to execute arbitrary commands
CriticalCVSS 10.0Proof of conceptEPSS 13%oreilly · website professionalJul 19, 2000
- CVE-2000-062342Plan
Buffer overflow in O'Reilly WebSite Professional web server 2.4 and earlier allows remote attackers to execute arbitrary commands via a long
CriticalCVSS 10.0No exploitEPSS 5%oreilly · website professionalJul 17, 2000
- CVE-1999-017834Monitor
Buffer overflow in the win-c-sample program (win-c-sample.exe) in the WebSite web server 1.1e allows remote attackers to execute arbitrary c
HighCVSS 7.5Proof of conceptEPSS 12%oreilly · oreilly websiteJan 1, 1997
- CVE-2001-062632Monitor
O'Reilly Website Professional 2.5.4 and earlier allows remote attackers to determine the physical path to the root directory via a URL reque
HighCVSS 7.5Proof of conceptEPSS 7%oreilly · website professionalAug 22, 2001
- CVE-1999-017731Monitor
The uploader program in the WebSite web server allows a remote attacker to execute arbitrary programs.
HighCVSS 7.5No exploitEPSS 2%oreilly · websiteSep 1, 1997
- CVE-2000-076930Monitor
O'Reilly WebSite Pro 2.3.7 installs the uploader.exe program with execute permissions for all users, which allows remote attackers to create
HighCVSS 7.5No exploitEPSS 1%oreilly · website proOct 20, 2000
- CVE-2001-074322Monitor
Paging function in O'Reilly WebBoard Pager 4.10 allows remote attackers to cause a denial of service via a message with an escaped ' charact
MediumCVSS 5.0Proof of conceptEPSS 5%oreilly · webboardOct 18, 2001
- CVE-2000-006621Monitor
WebSite Pro allows remote attackers to determine the real pathname of webdirectories via a malformed URL request.
MediumCVSS 5.0No exploitEPSS 2%oreilly · website professionalJan 13, 2000
- CVE-1999-118021Monitor
O'Reilly WebSite 1.1e and Website Pro 2.0 allows remote attackers to execute arbitrary commands via shell metacharacters in an argument to (
MediumCVSS 5.0No exploitEPSS 2%oreilly · websiteFeb 16, 1999
- CVE-2001-039420Monitor
Remote manager service in Website Pro 3.0.37 allows remote attackers to cause a denial of service via a series of malformed HTTP requests to
MediumCVSS 5.0No exploitEPSS 2%oreilly · website proAug 22, 2001