This page lists publicly disclosed CVE vulnerabilities affecting oreilly website_professional (linked via NVD CPE). Each row includes severity scores, summaries, and publication dates to help identify and analyze security issues.
| CVE | Summary | Source | Max CVSS | EPSS % | Published | Updated |
|---|---|---|---|---|---|---|
| CVE-2001-0626 | O'Reilly Website Professional 2.5.4 and earlier allows remote attackers to determine the physical path to the root directory via a URL request containing a ":" character. | [email protected] | 7.5 | 7.02% | 2001-08-22 | 2026-06-16 |
| CVE-2000-0622 | Buffer overflow in Webfind CGI program in O'Reilly WebSite Professional web server 2.x allows remote attackers to execute arbitrary commands via a URL containing a long "keywords" parameter. | [email protected] | 10.0 | 12.75% | 2000-07-19 | 2026-06-16 |
| CVE-2000-0623 | Buffer overflow in O'Reilly WebSite Professional web server 2.4 and earlier allows remote attackers to execute arbitrary commands via a long GET request or Referrer header. | [email protected] | 10.0 | 5.17% | 2000-07-17 | 2026-06-16 |
| CVE-2000-0066 | WebSite Pro allows remote attackers to determine the real pathname of webdirectories via a malformed URL request. | [email protected] | 5.0 | 2.04% | 2000-01-13 | 2026-06-16 |