CVE-1999-1180
Oreilly Web — NVD-CWE-Other
- Published: 1999-02-16T05:00:00.000
- Last modified: 2025-04-03T01:03:51.193
- Vendors: Oreilly
- Products: Web
- CWE: NVD-CWE-Other
CVE-1999-1180 — O'Reilly WebSite 1.1e and Website Pro 2.0 allows remote attackers to execute arbitrary commands via shell metacharacters in an argument to (1) args.cmd or (2) args.bat. [Weakness: NVD-CWE-Other]
Related CVE by CWE
No related CWE found.
Top CVE for Vendor
No items for this vendor.
Recently Exploited Similar Vulnerabilities
No recent KEV-listed items for this vendor/product.
O’Reilly WebSite 1.1e and Website Pro 2.0 allows remote attackers to execute arbitrary commands via shell metacharacters in an argument to (1) args.cmd or (2) args.bat.
🧠 Explainer: What this vulnerability means
Summary: Web from Oreilly is impacted (CWE: unspecified).
Impact: It may allow privilege escalation, data exposure, or service interruption.
Mitigation: Apply the latest vendor patch or update to a fixed version; disable vulnerable modules where possible.
No explicit mitigation/advisory links found in references.