← Back

Oreilly

oreilly

10 CVEs • 5 products

Products (5)

Click to collapse
Toggle
Website Pro
website_pro
Website
website
Webboard
webboard

CVEs (10)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Oreilly
1Webboard
Apr 16, 2026
Oct 18, 2001
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Paging function in O'Reilly WebBoard Pager 4.10 allows remote attackers to cause a denial of service via a message with an escaped ' character followed by JavaScript commands.
1Oreilly
1Website Professional
Apr 16, 2026
Aug 22, 2001
N/A· v4
N/A· v3
7.5 HIGH· v2
O'Reilly Website Professional 2.5.4 and earlier allows remote attackers to determine the physical path to the root directory via a URL request containing a ":" character.
1Oreilly
1Website Pro
Apr 16, 2026
Aug 22, 2001
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Remote manager service in Website Pro 3.0.37 allows remote attackers to cause a denial of service via a series of malformed HTTP requests to the /dyn directory.
1Oreilly
1Website Pro
Apr 16, 2026
Oct 20, 2000
N/A· v4
N/A· v3
7.5 HIGH· v2
O'Reilly WebSite Pro 2.3.7 installs the uploader.exe program with execute permissions for all users, which allows remote attackers to create and execute arbitrary files by directly calling uploader.exe.
1Oreilly
1Website Professional
Apr 16, 2026
Jul 19, 2000
N/A· v4
N/A· v3
10.0 HIGH· v2
Buffer overflow in Webfind CGI program in O'Reilly WebSite Professional web server 2.x allows remote attackers to execute arbitrary commands via a URL containing a long "keywords" parameter.
1Oreilly
1Website Professional
Apr 16, 2026
Jul 17, 2000
N/A· v4
N/A· v3
10.0 HIGH· v2
Buffer overflow in O'Reilly WebSite Professional web server 2.4 and earlier allows remote attackers to execute arbitrary commands via a long GET request or Referrer header.
1Oreilly
1Website Professional
Apr 16, 2026
Jan 13, 2000
N/A· v4
N/A· v3
5.0 MEDIUM· v2
WebSite Pro allows remote attackers to determine the real pathname of webdirectories via a malformed URL request.
1Oreilly
2Website
Website Pro
Apr 16, 2026
Feb 16, 1999
N/A· v4
N/A· v3
5.0 MEDIUM· v2
O'Reilly WebSite 1.1e and Website Pro 2.0 allows remote attackers to execute arbitrary commands via shell metacharacters in an argument to (1) args.cmd or (2) args.bat.
1Oreilly
1Website
Apr 16, 2026
Sep 1, 1997
N/A· v4
N/A· v3
7.5 HIGH· v2
The uploader program in the WebSite web server allows a remote attacker to execute arbitrary programs.
1Oreilly
1Oreilly Website
Apr 16, 2026
Jan 1, 1997
N/A· v4
N/A· v3
7.5 HIGH· v2
Buffer overflow in the win-c-sample program (win-c-sample.exe) in the WebSite web server 1.1e allows remote attackers to execute arbitrary code via a long query string.