Lucene search

K
cve[email protected]CVE-2011-4853
HistoryDec 16, 2011 - 11:55 a.m.

CVE-2011-4853

2011-12-1611:55:13
CWE-200
web.nvd.nist.gov
18
cve-2011-4853
control panel
parallels plesk panel
information security
remote attack
vulnerability

4.3 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:M/Au:N/C:P/I:N/A:N

6.4 Medium

AI Score

Confidence

Low

0.003 Low

EPSS

Percentile

71.5%

The Control Panel in Parallels Plesk Panel 10.4.4_build20111103.18 includes an RFC 1918 IP address within a web page, which allows remote attackers to obtain potentially sensitive information by reading this page, as demonstrated by smb/user/list-data/items-per-page/ and certain other files.

Affected configurations

NVD
Node
parallelsparallels_plesk_panelMatch10.4.4_build20111103.18
AND
microsoftwindows_2003_server
OR
microsoftwindows_server_2008Match-

4.3 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:M/Au:N/C:P/I:N/A:N

6.4 Medium

AI Score

Confidence

Low

0.003 Low

EPSS

Percentile

71.5%

Related for CVE-2011-4853