Vulnerabilities
Vulnerable Software
Oreilly:  Security Vulnerabilities
Paging function in O'Reilly WebBoard Pager 4.10 allows remote attackers to cause a denial of service via a message with an escaped ' character followed by JavaScript commands.
CVSS Score
5.0
EPSS Score
0.03
Published
2001-10-18
Remote manager service in Website Pro 3.0.37 allows remote attackers to cause a denial of service via a series of malformed HTTP requests to the /dyn directory.
CVSS Score
5.0
EPSS Score
0.007
Published
2001-08-22
O'Reilly Website Professional 2.5.4 and earlier allows remote attackers to determine the physical path to the root directory via a URL request containing a ":" character.
CVSS Score
7.5
EPSS Score
0.031
Published
2001-08-22
O'Reilly WebSite Pro 2.3.7 installs the uploader.exe program with execute permissions for all users, which allows remote attackers to create and execute arbitrary files by directly calling uploader.exe.
CVSS Score
7.5
EPSS Score
0.006
Published
2000-10-20
Buffer overflow in Webfind CGI program in O'Reilly WebSite Professional web server 2.x allows remote attackers to execute arbitrary commands via a URL containing a long "keywords" parameter.
CVSS Score
10.0
EPSS Score
0.069
Published
2000-07-19
Buffer overflow in O'Reilly WebSite Professional web server 2.4 and earlier allows remote attackers to execute arbitrary commands via a long GET request or Referrer header.
CVSS Score
10.0
EPSS Score
0.035
Published
2000-07-17
WebSite Pro allows remote attackers to determine the real pathname of webdirectories via a malformed URL request.
CVSS Score
5.0
EPSS Score
0.006
Published
2000-01-13
O'Reilly WebSite 1.1e and Website Pro 2.0 allows remote attackers to execute arbitrary commands via shell metacharacters in an argument to (1) args.cmd or (2) args.bat.
CVSS Score
5.0
EPSS Score
0.013
Published
1999-02-16
The uploader program in the WebSite web server allows a remote attacker to execute arbitrary programs.
CVSS Score
7.5
EPSS Score
0.006
Published
1997-09-01
Buffer overflow in the win-c-sample program (win-c-sample.exe) in the WebSite web server 1.1e allows remote attackers to execute arbitrary code via a long query string.
CVSS Score
7.5
EPSS Score
0.071
Published
1997-01-01


Contact Us

Shodan ® - All rights reserved