10
CVSSv2

CVE-2000-0622

Published: 19/07/2000 Updated: 10/10/2017
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 1000
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Buffer overflow in Webfind CGI program in O'Reilly WebSite Professional web server 2.x allows remote malicious users to execute arbitrary commands via a URL containing a long "keywords" parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

oreilly website professional 2.3.18

oreilly website professional 2.4

oreilly website professional 2.4.9

Exploits

source: wwwsecurityfocuscom/bid/1487/info O'Reilly WebSite Professional is a web server package distributed by O'Reilly & Associates Certain versions of this web server (the entire 2X version line) ship with a utility containing a remotely exploitable buffer overflow The utility in question is a search engine utility titled 'webfin ...