Skip to content
Noroxi

oreilly records

10 published records for vendor oreilly.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
6
With a fix record
0%
Median publish → KEV
No record has entered KEV

Records by year

    Bar: total · dark part: CISA KEV.

    Recurring classes

      The weakness classes this vendor ships most often: where to look.

      CWE

      All records

      10 records
      • Buffer overflow in Webfind CGI program in O'Reilly WebSite Professional web server 2.x allows remote attackers to execute arbitrary commands

        CriticalCVSS 10.0Proof of conceptEPSS 13%

        oreilly · website professionalJul 19, 2000

      • Buffer overflow in O'Reilly WebSite Professional web server 2.4 and earlier allows remote attackers to execute arbitrary commands via a long

        CriticalCVSS 10.0No exploitEPSS 5%

        oreilly · website professionalJul 17, 2000

      • CVE-1999-0178
        34Monitor

        Buffer overflow in the win-c-sample program (win-c-sample.exe) in the WebSite web server 1.1e allows remote attackers to execute arbitrary c

        HighCVSS 7.5Proof of conceptEPSS 12%

        oreilly · oreilly websiteJan 1, 1997

      • CVE-2001-0626
        32Monitor

        O'Reilly Website Professional 2.5.4 and earlier allows remote attackers to determine the physical path to the root directory via a URL reque

        HighCVSS 7.5Proof of conceptEPSS 7%

        oreilly · website professionalAug 22, 2001

      • CVE-1999-0177
        31Monitor

        The uploader program in the WebSite web server allows a remote attacker to execute arbitrary programs.

        HighCVSS 7.5No exploitEPSS 2%

        oreilly · websiteSep 1, 1997

      • CVE-2000-0769
        30Monitor

        O'Reilly WebSite Pro 2.3.7 installs the uploader.exe program with execute permissions for all users, which allows remote attackers to create

        HighCVSS 7.5No exploitEPSS 1%

        oreilly · website proOct 20, 2000

      • CVE-2001-0743
        22Monitor

        Paging function in O'Reilly WebBoard Pager 4.10 allows remote attackers to cause a denial of service via a message with an escaped ' charact

        MediumCVSS 5.0Proof of conceptEPSS 5%

        oreilly · webboardOct 18, 2001

      • CVE-2000-0066
        21Monitor

        WebSite Pro allows remote attackers to determine the real pathname of webdirectories via a malformed URL request.

        MediumCVSS 5.0No exploitEPSS 2%

        oreilly · website professionalJan 13, 2000

      • CVE-1999-1180
        21Monitor

        O'Reilly WebSite 1.1e and Website Pro 2.0 allows remote attackers to execute arbitrary commands via shell metacharacters in an argument to (

        MediumCVSS 5.0No exploitEPSS 2%

        oreilly · websiteFeb 16, 1999

      • CVE-2001-0394
        20Monitor

        Remote manager service in Website Pro 3.0.37 allows remote attackers to cause a denial of service via a series of malformed HTTP requests to

        MediumCVSS 5.0No exploitEPSS 2%

        oreilly · website proAug 22, 2001