Vulnerability index

Browse CVEs

99 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Parallels Plesk Small Business Panel MEDIUM 5.0
CVE-2011-4767

The Site Editor (aka SiteBuilder) feature in Parallels Plesk Small Business Panel 10.2.0 has web pages containing e-mail addresses that are not inten…

Mitigation only
Fix from $1,600 2011-12-16
Parallels Plesk Small Business Panel HIGH 10.0
CVE-2011-4755

Parallels Plesk Small Business Panel 10.2.0 does not properly validate string data that is intended for storage in an XML document, which allows remo…

Mitigation only
Fix from $1,950 2011-12-16
Parallels Plesk Small Business Panel HIGH 10.0
CVE-2011-4757

Parallels Plesk Small Business Panel 10.2.0 generates a password form field without disabling the autocomplete feature, which makes it easier for rem…

Mitigation only
Fix from $1,950 2011-12-16
Parallels Plesk Small Business Panel HIGH 10.0
CVE-2011-4761

Parallels Plesk Small Business Panel 10.2.0 omits the Content-Type header's charset parameter for certain resources, which might allow remote attacke…

Mitigation only
Fix from $1,950 2011-12-16
Parallels Plesk Small Business Panel HIGH 10.0
CVE-2011-4762

Parallels Plesk Small Business Panel 10.2.0 sends incorrect Content-Type headers for certain resources, which might allow remote attackers to have an…

Mitigation only
Fix from $1,950 2011-12-16
Parallels Plesk Small Business Panel HIGH 7.5
CVE-2011-4753

Multiple SQL injection vulnerabilities in Parallels Plesk Small Business Panel 10.2.0 allow remote attackers to execute arbitrary SQL commands via cr…

Mitigation only
Fix from $1,950 2011-12-16
Parallels Plesk Small Business Panel HIGH 7.5
CVE-2011-4763

Multiple SQL injection vulnerabilities in the Site Editor (aka SiteBuilder) feature in Parallels Plesk Small Business Panel 10.2.0 allow remote attac…

Mitigation only
Fix from $1,950 2011-12-16
Parallels Plesk Small Business Panel MEDIUM 5.0
CVE-2011-4756

Parallels Plesk Small Business Panel 10.2.0 does not include the HTTPOnly flag in a Set-Cookie header for a cookie, which makes it easier for remote …

Mitigation only
Fix from $1,600 2011-12-16
Parallels Plesk Small Business Panel MEDIUM 5.0
CVE-2011-4758

Parallels Plesk Small Business Panel 10.2.0 receives cleartext password input over HTTP, which allows remote attackers to obtain sensitive informatio…

Mitigation only
Fix from $1,600 2011-12-16
Parallels Plesk Small Business Panel MEDIUM 5.0
CVE-2011-4759

Parallels Plesk Small Business Panel 10.2.0 generates web pages containing external links in response to GET requests with query strings for client@1…

Mitigation only
Fix from $1,600 2011-12-16
Parallels Plesk Small Business Panel MEDIUM 5.0
CVE-2011-4760

Parallels Plesk Small Business Panel 10.2.0 has web pages containing e-mail addresses that are not intended for correspondence about the local applic…

Mitigation only
Fix from $1,600 2011-12-16
Parallels Plesk Panel HIGH 10.0
CVE-2011-4739

The Control Panel in Parallels Plesk Panel 10.2.0 build 20110407.20 generates a password form field without disabling the autocomplete feature, which…

Mitigation only
Fix from $1,950 2011-12-16
Parallels Plesk Panel HIGH 10.0
CVE-2011-4743

The Control Panel in Parallels Plesk Panel 10.2.0 build 20110407.20 omits the Content-Type header's charset parameter for certain resources, which mi…

No fix yet
Fix from $1,950 2011-12-16
Parallels Plesk Panel HIGH 10.0
CVE-2011-4744

The Control Panel in Parallels Plesk Panel 10.2.0 build 20110407.20 sends incorrect Content-Type headers for certain resources, which might allow rem…

Mitigation only
Fix from $1,950 2011-12-16
Parallels Plesk Panel HIGH 10.0
CVE-2011-4749

The billing system for Parallels Plesk Panel 10.3.1_build1013110726.09 generates a password form field without disabling the autocomplete feature, wh…

Mitigation only
Fix from $1,950 2011-12-16
Parallels Plesk Panel MEDIUM 5.0
CVE-2011-4737

The Control Panel in Parallels Plesk Panel 10.2.0 build 20110407.20 includes a submitted password within an HTTP response body, which allows remote a…

Mitigation only
Fix from $1,600 2011-12-16
Parallels Plesk Panel MEDIUM 5.0
CVE-2011-4738

The Control Panel in Parallels Plesk Panel 10.2.0 build 20110407.20 does not include the HTTPOnly flag in a Set-Cookie header for a cookie, which mak…

Mitigation only
Fix from $1,600 2011-12-16
Parallels Plesk Panel MEDIUM 5.0
CVE-2011-4741

The Control Panel in Parallels Plesk Panel 10.2.0 build 20110407.20 includes a database connection string within a web page, which allows remote atta…

Mitigation only
Fix from $1,600 2011-12-16
Parallels Plesk Panel MEDIUM 5.0
CVE-2011-4742

The Control Panel in Parallels Plesk Panel 10.2.0 build 20110407.20 has web pages containing e-mail addresses that are not intended for correspondenc…

Mitigation only
Fix from $1,600 2011-12-16
Parallels Plesk Panel MEDIUM 5.0
CVE-2011-4746

The billing system for Parallels Plesk Panel 10.3.1_build1013110726.09 does not disable the SSL 2.0 protocol, which makes it easier for remote attack…

Mitigation only
Fix from $1,600 2011-12-16
Parallels Plesk Panel MEDIUM 5.0
CVE-2011-4747

The billing system for Parallels Plesk Panel 10.3.1_build1013110726.09 does not prevent the use of weak ciphers for SSL sessions, which makes it easi…

Mitigation only
Fix from $1,600 2011-12-16
Parallels Plesk Panel MEDIUM 5.0
CVE-2011-4748

The billing system for Parallels Plesk Panel 10.3.1_build1013110726.09 has web pages containing e-mail addresses that are not intended for correspond…

Mitigation only
Fix from $1,600 2011-12-16
Parallels Plesk Panel HIGH 10.0
CVE-2011-4732

The Server Administration Panel in Parallels Plesk Panel 10.2.0_build1011110331.18 omits the Content-Type header's charset parameter for certain reso…

Mitigation only
Fix from $1,950 2011-12-16
Parallels Plesk Panel HIGH 10.0
CVE-2011-4733

The Server Administration Panel in Parallels Plesk Panel 10.2.0_build1011110331.18 sends incorrect Content-Type headers for certain resources, which …

Mitigation only
Fix from $1,950 2011-12-16
Parallels Plesk Panel HIGH 7.5
CVE-2011-4734

Multiple SQL injection vulnerabilities in the Control Panel in Parallels Plesk Panel 10.2.0 build 20110407.20 allow remote attackers to execute arbit…

Mitigation only
Fix from $1,950 2011-12-16
Parallels Plesk Panel MEDIUM 5.0
CVE-2011-4731

The Server Administration Panel in Parallels Plesk Panel 10.2.0_build1011110331.18 includes an RFC 1918 IP address within a web page, which allows re…

Mitigation only
Fix from $1,600 2011-12-16
Parallels Plesk Panel MEDIUM 5.0
CVE-2011-4736

The Control Panel in Parallels Plesk Panel 10.2.0 build 20110407.20 receives cleartext password input over HTTP, which allows remote attackers to obt…

Mitigation only
Fix from $1,600 2011-12-16
Parallels Plesk Panel HIGH 10.0
CVE-2011-4730

The Server Administration Panel in Parallels Plesk Panel 10.2.0_build1011110331.18 generates a password form field without disabling the autocomplete…

Mitigation only
Fix from $1,950 2011-12-16
Parallels Plesk Panel MEDIUM 5.0
CVE-2011-4728

The Server Administration Panel in Parallels Plesk Panel 10.2.0_build1011110331.18 does not set the secure flag for a cookie in an https session, whi…

Mitigation only
Fix from $1,600 2011-12-16
Parallels Plesk Panel MEDIUM 5.0
CVE-2011-4729

The Server Administration Panel in Parallels Plesk Panel 10.2.0_build1011110331.18 does not include the HTTPOnly flag in a Set-Cookie header for a co…

Mitigation only
Fix from $1,600 2011-12-16