CVE Tools

Oreilly

10 CVEs tracked since 1999. Since Sep 1999, none of them reached CISA KEV.

Oreilly CVEs per month

Sep 1999 to Mar 2002. Point at a month, or focus the strip and use the arrow keys.
Oreilly CVEs per month, with the share now in CISA KEV
MonthCVEsIn CISA KEV
1999-0920
1999-10null or fewer
1999-11null or fewer
1999-12null or fewer
2000-01null or fewer
2000-0210
2000-03null or fewer
2000-04null or fewer
2000-05null or fewer
2000-06null or fewer
2000-07null or fewer
2000-0810
2000-0910
2000-10null or fewer
2000-11null or fewer
2000-12null or fewer
2001-01null or fewer
2001-02null or fewer
2001-03null or fewer
2001-04null or fewer
2001-0510
2001-06null or fewer
2001-07null or fewer
2001-08null or fewer
2001-0910
2001-1010
2001-11null or fewer
2001-12null or fewer
2002-01null or fewer
2002-02null or fewer
2002-0320

Products

The products that kept showing up in Oreilly's monthly top three, with their CVEs summed over those months.

  1. Website Professional44 months
  2. Website Pro33 months
  3. Website22 months
  4. Oreilly Website11 month
  5. Webboard11 month

Latest CVEs

The 10 most recently published vulnerabilities affecting Oreilly.

  1. CVE-2001-0626O'Reilly Website Professional 2.5.4 and earlier allows remote attackers to determine the physical path to the root directory via a URL request containing a ":" character.7.5
  2. CVE-2001-0394Remote manager service in Website Pro 3.0.37 allows remote attackers to cause a denial of service via a series of malformed HTTP requests to the /dyn directory.5.0
  3. CVE-2001-0743Paging function in O'Reilly WebBoard Pager 4.10 allows remote attackers to cause a denial of service via a message with an escaped ' character followed by JavaScript commands.5.0
  4. CVE-1999-1180O'Reilly WebSite 1.1e and Website Pro 2.0 allows remote attackers to execute arbitrary commands via shell metacharacters in an argument to (1) args.cmd or (2) args.bat.5.0
  5. CVE-2000-0622Buffer overflow in Webfind CGI program in O'Reilly WebSite Professional web server 2.x allows remote attackers to execute arbitrary commands via a URL containing a long "keywords" parameter.10.0
  6. CVE-2000-0769O'Reilly WebSite Pro 2.3.7 installs the uploader.exe program with execute permissions for all users, which allows remote attackers to create and execute arbitrary files by directly calling uploader...7.5
  7. CVE-2000-0623Buffer overflow in O'Reilly WebSite Professional web server 2.4 and earlier allows remote attackers to execute arbitrary commands via a long GET request or Referrer header.10.0
  8. CVE-2000-0066WebSite Pro allows remote attackers to determine the real pathname of webdirectories via a malformed URL request.5.0
  9. CVE-1999-0177The uploader program in the WebSite web server allows a remote attacker to execute arbitrary programs.7.5
  10. CVE-1999-0178Buffer overflow in the win-c-sample program (win-c-sample.exe) in the WebSite web server 1.1e allows remote attackers to execute arbitrary code via a long query string.7.5

The record

Peak rank
#7 in Aug 2000
Busiest month shown
Sep 1999, 2 CVEs
Months with a KEV entry
0 since Sep 1999
Monthly snapshots
8 since 1999
Oreilly's full record, month by month

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store