Vulnerability index

Browse CVEs

136 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 10.0 CVE-2011-4733 The Server Administration Panel in Parallels Plesk Panel 10.2.0_build1011110331.18 sends incorrect Content-Type headers for certain resources, which … Parallels Plesk Panel Mitigation only Fix from $1,9502011-12-16 HIGH 7.5 CVE-2011-4734 Multiple SQL injection vulnerabilities in the Control Panel in Parallels Plesk Panel 10.2.0 build 20110407.20 allow remote attackers to execute arbit… Parallels Plesk Panel Mitigation only Fix from $1,9502011-12-16 MEDIUM 5.0 CVE-2011-4731 The Server Administration Panel in Parallels Plesk Panel 10.2.0_build1011110331.18 includes an RFC 1918 IP address within a web page, which allows re… Parallels Plesk Panel Mitigation only Fix from $1,6002011-12-16 MEDIUM 5.0 CVE-2011-4736 The Control Panel in Parallels Plesk Panel 10.2.0 build 20110407.20 receives cleartext password input over HTTP, which allows remote attackers to obt… Parallels Plesk Panel Mitigation only Fix from $1,6002011-12-16 HIGH 10.0 CVE-2011-4730 The Server Administration Panel in Parallels Plesk Panel 10.2.0_build1011110331.18 generates a password form field without disabling the autocomplete… Parallels Plesk Panel Mitigation only Fix from $1,9502011-12-16 MEDIUM 5.0 CVE-2011-4728 The Server Administration Panel in Parallels Plesk Panel 10.2.0_build1011110331.18 does not set the secure flag for a cookie in an https session, whi… Parallels Plesk Panel Mitigation only Fix from $1,6002011-12-16 MEDIUM 5.0 CVE-2011-4729 The Server Administration Panel in Parallels Plesk Panel 10.2.0_build1011110331.18 does not include the HTTPOnly flag in a Set-Cookie header for a co… Parallels Plesk Panel Mitigation only Fix from $1,6002011-12-16 HIGH 10.0 CVE-2011-4727 The Server Administration Panel in Parallels Plesk Panel 10.2.0_build1011110331.18 does not properly validate string data that is intended for storag… Parallels Plesk Panel Mitigation only Fix from $1,9502011-12-16 HIGH 7.5 CVE-2011-4725 Multiple SQL injection vulnerabilities in the Server Administration Panel in Parallels Plesk Panel 10.2.0_build1011110331.18 allow remote attackers t… Parallels Plesk Panel Mitigation only Fix from $1,9502011-12-16 MEDIUM 5.8 CVE-2008-6984 Plesk 8.6.0, when short mail login names (SHORTNAMES) are enabled, allows remote attackers to bypass authentication and send spam e-mail via a messag… Plesk No fix yet Fix from $1,6002009-08-19 MEDIUM 6.8 CVE-2008-6478 Cross-site request forgery (CSRF) vulnerability in the file manager in the VZPP web interface for Parallels Virtuozzo 365.6.swsoft (build 4.0.0-365.6… Virtuozzo Containers No fix yet Fix from $1,6002009-03-16 MEDIUM 6.8 CVE-2008-6479 Cross-site request forgery (CSRF) vulnerability in the "change password" feature in the VZPP web interface for Parallels Virtuozzo 25.4.swsoft (build… Parallels Virtuozzo No fix yet Fix from $1,6002009-03-16 HIGH 9.3 CVE-2007-4009 PHP remote file inclusion vulnerability in admin/business_inc/saveserver.php in SWSoft Confixx Pro 2.0.12 through 3.3.1 allows remote attackers to ex… Confixx No fix yet Fix from $1,9502007-07-26 MEDIUM 6.8 CVE-2007-2454 Heap-based buffer overflow in the VGA device in Parallels allows local users, with root access to the guest operating system, to terminate the virtua… Parallels Desktop Mitigation only Fix from $1,6002007-05-02 MEDIUM 6.1 CVE-2007-2455 Parallels allows local users to cause a denial of service (virtual machine abort) via (1) certain INT instructions, as demonstrated by INT 0xAA; (2) … Parallels Desktop Mitigation only Fix from $1,6002007-05-02 HIGH 7.2 CVE-2007-1222 Parallels Desktop for Mac before 20070216 implements Drag and Drop by sharing the entire host filesystem as the .psf share, which allows local users … Parallels Desktop Mitigation only Fix from $1,9502007-03-02