Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Omnicron

First CVE: Jun 5, 1999Active for: 27 yearsTotal CVEs: 10
39.3
VTI Score
Medium

Omnicron's vulnerability footprint is concentrated in a web-server product, OmniHTTPD, which despite modest disclosure volume occupies a notable position within its category. The vendor's disclosures frequently acquire public exploit code, making timely patching of affected instances important for defenders managing this component. Live severity, exploitation activity, and exposure counts are shown alongside this summary.

FAUCET AI Generated
10
Total CVEs
More Total CVEs than 92% of tracked vendors
2.0
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 80% of tracked vendors
6.2
Avg CVSS Score
Higher Avg CVSS Score than 35% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Omnicron over time

Volume of CVEsAvg CVSS Base Score
First CVE
Jun 5, 1999
27 years ago
Most Recent CVE
Dec 31, 2004
7,875 days ago

Products(1 total)

Top CVEs

Signals from CVEs in this vendor scope (10 CVEs).

10 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2001-0113HIGH
statsconfig.pl in OmniHTTPd 2.07 allows remote attackers to execute arbitrary commands via the mostbrowsers parameter, whose value is used as part of a generated Perl script.
Mar 12, 200110.039NOYES
CVE-1999-0951HIGH
Buffer overflow in OmniHTTPd CGI program imagemap.exe allows remote attackers to execute commands.
Oct 22, 199910.039NOYES
CVE-2004-2299HIGH
Buffer overflow in Omnicron OmniHTTPd 3.0a and earlier allows remote attackers to execute arbitrary code via an HTTP GET request with a long Range header.
Dec 31, 20047.532NOYES
CVE-2001-0778MEDIUM
OmniHTTPd 2.0.8 and earlier allow remote attackers to obtain source code via a GET request with the URL-encoded symbol for a space (%20).
Oct 18, 20015.024NOYES
CVE-2001-0114MEDIUM
statsconfig.pl in OmniHTTPd 2.07 allows remote attackers to overwrite arbitrary files via the cgidir parameter.
Mar 12, 20015.023NOYES
CVE-1999-0970MEDIUM
The OmniHTTPD visadmin.exe program allows a remote attacker to conduct a denial of service via a malformed URL which causes a large number of temporary files to be created.
Jun 5, 19995.023NOYES
CVE-2002-1455MEDIUM
Multiple cross-site scripting (XSS) vulnerabilities in OmniHTTPd allow remote attackers to insert script or HTML into web pages via (1) test.php, (2) test.shtml, or (3) redir.exe.
Jun 9, 20034.322NOYES
CVE-2001-0613MEDIUM
Omnicron Technologies OmniHTTPD Professional 2.08 and earlier allows a remote attacker to create a denial of service via a long POST URL request.
Aug 22, 20015.019NONO
CVE-2001-0777MEDIUM
Omnicron OmniHTTPd 2.0.8 allows remote attackers to cause a denial of service (memory exhaustion) via a series of requests for PHP scripts.
Oct 18, 20015.016NONO
CVE-2002-1035MEDIUM
Omnicron OmniHTTPd 2.09 allows remote attackers to cause a denial of service (crash) via an HTTP request with a long, malformed HTTP 1version number.
Oct 4, 20025.015NONO
View all 10 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products10 CVEs
70%
30%
Severity distribution among all CVEs352,294 CVEs
45%
40%
11%
MediumHigh
Attack Vector
Local0 (0.0%)
Network0 (0.0%)
Unknown10 (100.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low0 (0.0%)
High0 (0.0%)
Unknown10 (100.0%)
User Interaction
None0 (0.0%)
Unknown10 (100.0%)
Required0 (0.0%)
Privileges Required
Low0 (0.0%)
High0 (0.0%)
None0 (0.0%)
Unknown10 (100.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (10 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
7 CVEs
70.0% of CVEs· 84th percentile

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Omnicron.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Omnicron — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Omnicron's Products

View all 1 CNAs →