O'Reilly WebSite Pro Write Access Vulnerability
This is an old security hole that has been re-reported in securityfocus.
Upon installation of O'Reilly WebSite Pro, a number of CGI directories are
created. The cgi-win directory is preloaded with a program called
uploader.exe. This program allows uploading of content to the webserver with
no security control and should be deleted.
O'Reilly WebSite Pro Write Access Vulnerability