Vulnerability index

Browse CVEs

136 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Parallels Plesk Panel HIGH 9.3
CVE-2011-4851

The Control Panel in Parallels Plesk Panel 10.4.4_build20111103.18 generates a password form field without disabling the autocomplete feature, which …

Mitigation only
Fix from $1,950 2011-12-16
Parallels Plesk Panel HIGH 9.3
CVE-2011-4854

The Control Panel in Parallels Plesk Panel 10.4.4_build20111103.18 does not ensure that Content-Type HTTP headers match the corresponding Content-Typ…

Mitigation only
Fix from $1,950 2011-12-16
Parallels Plesk Panel HIGH 9.3
CVE-2011-4855

The Control Panel in Parallels Plesk Panel 10.4.4_build20111103.18 omits the Content-Type header's charset parameter for certain resources, which mig…

Mitigation only
Fix from $1,950 2011-12-16
Parallels Plesk Panel HIGH 9.3
CVE-2011-4856

The Control Panel in Parallels Plesk Panel 10.4.4_build20111103.18 sends incorrect Content-Type headers for certain resources, which might allow remo…

Mitigation only
Fix from $1,950 2011-12-16
Parallels Plesk Small Business Panel HIGH 10.0
CVE-2011-4768

The Site Editor (aka SiteBuilder) feature in Parallels Plesk Small Business Panel 10.2.0 omits the Content-Type header's charset parameter for certai…

Mitigation only
Fix from $1,950 2011-12-16
Parallels Plesk Panel HIGH 7.5
CVE-2011-4847

SQL injection vulnerability in the Control Panel in Parallels Plesk Panel 10.4.4_build20111103.18 allows remote attackers to execute arbitrary SQL co…

Mitigation only
Fix from $1,950 2011-12-16
Parallels Plesk Small Business Panel MEDIUM 5.0
CVE-2011-4766

The Site Editor (aka SiteBuilder) feature in Parallels Plesk Small Business Panel 10.2.0 allows remote attackers to obtain ASP source code via a dire…

Mitigation only
Fix from $1,600 2011-12-16
Parallels Plesk Small Business Panel MEDIUM 5.0
CVE-2011-4767

The Site Editor (aka SiteBuilder) feature in Parallels Plesk Small Business Panel 10.2.0 has web pages containing e-mail addresses that are not inten…

Mitigation only
Fix from $1,600 2011-12-16
Parallels Plesk Small Business Panel HIGH 10.0
CVE-2011-4755

Parallels Plesk Small Business Panel 10.2.0 does not properly validate string data that is intended for storage in an XML document, which allows remo…

Mitigation only
Fix from $1,950 2011-12-16
Parallels Plesk Small Business Panel HIGH 10.0
CVE-2011-4757

Parallels Plesk Small Business Panel 10.2.0 generates a password form field without disabling the autocomplete feature, which makes it easier for rem…

Mitigation only
Fix from $1,950 2011-12-16
Parallels Plesk Small Business Panel HIGH 10.0
CVE-2011-4761

Parallels Plesk Small Business Panel 10.2.0 omits the Content-Type header's charset parameter for certain resources, which might allow remote attacke…

Mitigation only
Fix from $1,950 2011-12-16
Parallels Plesk Small Business Panel HIGH 10.0
CVE-2011-4762

Parallels Plesk Small Business Panel 10.2.0 sends incorrect Content-Type headers for certain resources, which might allow remote attackers to have an…

Mitigation only
Fix from $1,950 2011-12-16
Parallels Plesk Small Business Panel HIGH 7.5
CVE-2011-4753

Multiple SQL injection vulnerabilities in Parallels Plesk Small Business Panel 10.2.0 allow remote attackers to execute arbitrary SQL commands via cr…

Mitigation only
Fix from $1,950 2011-12-16
Parallels Plesk Small Business Panel HIGH 7.5
CVE-2011-4763

Multiple SQL injection vulnerabilities in the Site Editor (aka SiteBuilder) feature in Parallels Plesk Small Business Panel 10.2.0 allow remote attac…

Mitigation only
Fix from $1,950 2011-12-16
Parallels Plesk Small Business Panel MEDIUM 5.0
CVE-2011-4756

Parallels Plesk Small Business Panel 10.2.0 does not include the HTTPOnly flag in a Set-Cookie header for a cookie, which makes it easier for remote …

Mitigation only
Fix from $1,600 2011-12-16
Parallels Plesk Small Business Panel MEDIUM 5.0
CVE-2011-4758

Parallels Plesk Small Business Panel 10.2.0 receives cleartext password input over HTTP, which allows remote attackers to obtain sensitive informatio…

Mitigation only
Fix from $1,600 2011-12-16
Parallels Plesk Small Business Panel MEDIUM 5.0
CVE-2011-4759

Parallels Plesk Small Business Panel 10.2.0 generates web pages containing external links in response to GET requests with query strings for client@1…

Mitigation only
Fix from $1,600 2011-12-16
Parallels Plesk Small Business Panel MEDIUM 5.0
CVE-2011-4760

Parallels Plesk Small Business Panel 10.2.0 has web pages containing e-mail addresses that are not intended for correspondence about the local applic…

Mitigation only
Fix from $1,600 2011-12-16
Parallels Plesk Panel HIGH 10.0
CVE-2011-4739

The Control Panel in Parallels Plesk Panel 10.2.0 build 20110407.20 generates a password form field without disabling the autocomplete feature, which…

Mitigation only
Fix from $1,950 2011-12-16
Parallels Plesk Panel HIGH 10.0
CVE-2011-4743

The Control Panel in Parallels Plesk Panel 10.2.0 build 20110407.20 omits the Content-Type header's charset parameter for certain resources, which mi…

No fix yet
Fix from $1,950 2011-12-16
Parallels Plesk Panel HIGH 10.0
CVE-2011-4744

The Control Panel in Parallels Plesk Panel 10.2.0 build 20110407.20 sends incorrect Content-Type headers for certain resources, which might allow rem…

Mitigation only
Fix from $1,950 2011-12-16
Parallels Plesk Panel HIGH 10.0
CVE-2011-4749

The billing system for Parallels Plesk Panel 10.3.1_build1013110726.09 generates a password form field without disabling the autocomplete feature, wh…

Mitigation only
Fix from $1,950 2011-12-16
Parallels Plesk Panel MEDIUM 5.0
CVE-2011-4737

The Control Panel in Parallels Plesk Panel 10.2.0 build 20110407.20 includes a submitted password within an HTTP response body, which allows remote a…

Mitigation only
Fix from $1,600 2011-12-16
Parallels Plesk Panel MEDIUM 5.0
CVE-2011-4738

The Control Panel in Parallels Plesk Panel 10.2.0 build 20110407.20 does not include the HTTPOnly flag in a Set-Cookie header for a cookie, which mak…

Mitigation only
Fix from $1,600 2011-12-16
Parallels Plesk Panel MEDIUM 5.0
CVE-2011-4741

The Control Panel in Parallels Plesk Panel 10.2.0 build 20110407.20 includes a database connection string within a web page, which allows remote atta…

Mitigation only
Fix from $1,600 2011-12-16
Parallels Plesk Panel MEDIUM 5.0
CVE-2011-4742

The Control Panel in Parallels Plesk Panel 10.2.0 build 20110407.20 has web pages containing e-mail addresses that are not intended for correspondenc…

Mitigation only
Fix from $1,600 2011-12-16
Parallels Plesk Panel MEDIUM 5.0
CVE-2011-4746

The billing system for Parallels Plesk Panel 10.3.1_build1013110726.09 does not disable the SSL 2.0 protocol, which makes it easier for remote attack…

Mitigation only
Fix from $1,600 2011-12-16
Parallels Plesk Panel MEDIUM 5.0
CVE-2011-4747

The billing system for Parallels Plesk Panel 10.3.1_build1013110726.09 does not prevent the use of weak ciphers for SSL sessions, which makes it easi…

Mitigation only
Fix from $1,600 2011-12-16
Parallels Plesk Panel MEDIUM 5.0
CVE-2011-4748

The billing system for Parallels Plesk Panel 10.3.1_build1013110726.09 has web pages containing e-mail addresses that are not intended for correspond…

Mitigation only
Fix from $1,600 2011-12-16
Parallels Plesk Panel HIGH 10.0
CVE-2011-4732

The Server Administration Panel in Parallels Plesk Panel 10.2.0_build1011110331.18 omits the Content-Type header's charset parameter for certain reso…

Mitigation only
Fix from $1,950 2011-12-16