Vulnerability index

Browse CVEs

136 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Parallels Plesk Panel HIGH 10.0
CVE-2011-4733

The Server Administration Panel in Parallels Plesk Panel 10.2.0_build1011110331.18 sends incorrect Content-Type headers for certain resources, which …

Mitigation only
Fix from $1,950 2011-12-16
Parallels Plesk Panel HIGH 7.5
CVE-2011-4734

Multiple SQL injection vulnerabilities in the Control Panel in Parallels Plesk Panel 10.2.0 build 20110407.20 allow remote attackers to execute arbit…

Mitigation only
Fix from $1,950 2011-12-16
Parallels Plesk Panel MEDIUM 5.0
CVE-2011-4731

The Server Administration Panel in Parallels Plesk Panel 10.2.0_build1011110331.18 includes an RFC 1918 IP address within a web page, which allows re…

Mitigation only
Fix from $1,600 2011-12-16
Parallels Plesk Panel MEDIUM 5.0
CVE-2011-4736

The Control Panel in Parallels Plesk Panel 10.2.0 build 20110407.20 receives cleartext password input over HTTP, which allows remote attackers to obt…

Mitigation only
Fix from $1,600 2011-12-16
Parallels Plesk Panel HIGH 10.0
CVE-2011-4730

The Server Administration Panel in Parallels Plesk Panel 10.2.0_build1011110331.18 generates a password form field without disabling the autocomplete…

Mitigation only
Fix from $1,950 2011-12-16
Parallels Plesk Panel MEDIUM 5.0
CVE-2011-4728

The Server Administration Panel in Parallels Plesk Panel 10.2.0_build1011110331.18 does not set the secure flag for a cookie in an https session, whi…

Mitigation only
Fix from $1,600 2011-12-16
Parallels Plesk Panel MEDIUM 5.0
CVE-2011-4729

The Server Administration Panel in Parallels Plesk Panel 10.2.0_build1011110331.18 does not include the HTTPOnly flag in a Set-Cookie header for a co…

Mitigation only
Fix from $1,600 2011-12-16
Parallels Plesk Panel HIGH 10.0
CVE-2011-4727

The Server Administration Panel in Parallels Plesk Panel 10.2.0_build1011110331.18 does not properly validate string data that is intended for storag…

Mitigation only
Fix from $1,950 2011-12-16
Parallels Plesk Panel HIGH 7.5
CVE-2011-4725

Multiple SQL injection vulnerabilities in the Server Administration Panel in Parallels Plesk Panel 10.2.0_build1011110331.18 allow remote attackers t…

Mitigation only
Fix from $1,950 2011-12-16
Plesk MEDIUM 5.8
CVE-2008-6984

Plesk 8.6.0, when short mail login names (SHORTNAMES) are enabled, allows remote attackers to bypass authentication and send spam e-mail via a messag…

No fix yet
Fix from $1,600 2009-08-19
Virtuozzo Containers MEDIUM 6.8
CVE-2008-6478

Cross-site request forgery (CSRF) vulnerability in the file manager in the VZPP web interface for Parallels Virtuozzo 365.6.swsoft (build 4.0.0-365.6…

No fix yet
Fix from $1,600 2009-03-16
Parallels Virtuozzo MEDIUM 6.8
CVE-2008-6479

Cross-site request forgery (CSRF) vulnerability in the "change password" feature in the VZPP web interface for Parallels Virtuozzo 25.4.swsoft (build…

No fix yet
Fix from $1,600 2009-03-16
Confixx HIGH 9.3
CVE-2007-4009

PHP remote file inclusion vulnerability in admin/business_inc/saveserver.php in SWSoft Confixx Pro 2.0.12 through 3.3.1 allows remote attackers to ex…

No fix yet
Fix from $1,950 2007-07-26
Parallels Desktop MEDIUM 6.8
CVE-2007-2454

Heap-based buffer overflow in the VGA device in Parallels allows local users, with root access to the guest operating system, to terminate the virtua…

Mitigation only
Fix from $1,600 2007-05-02
Parallels Desktop MEDIUM 6.1
CVE-2007-2455

Parallels allows local users to cause a denial of service (virtual machine abort) via (1) certain INT instructions, as demonstrated by INT 0xAA; (2) …

Mitigation only
Fix from $1,600 2007-05-02
Parallels Desktop HIGH 7.2
CVE-2007-1222

Parallels Desktop for Mac before 20070216 implements Drag and Drop by sharing the entire host filesystem as the .psf share, which allows local users …

Mitigation only
Fix from $1,950 2007-03-02