HIGH · 10.0

CVE-2011-4761

Parallels Plesk Small Business Panel 10.2.0 omits the Content-Type header's charset parameter for certain resources, which might allow remote attackers to have an unspecified impact by leveraging an i...

Vulnerability Description

Parallels Plesk Small Business Panel 10.2.0 omits the Content-Type header's charset parameter for certain resources, which might allow remote attackers to have an unspecified impact by leveraging an interpretation conflict involving domains/sitebuilder_edit.php and certain other files. NOTE: it is possible that only clients, not the SmarterStats product, could be affected by this issue.

CVSS Score

10.0

HIGH

AV:N/AC:L/Au:N/C:C/I:C/A:C
Confidentiality
COMPLETE
Integrity
COMPLETE
Availability
COMPLETE

Affected Products

VendorProductVersions
ParallelsParallels Plesk Small Business Panel10.2.0

References

FAQ

What is CVE-2011-4761?

CVE-2011-4761 is a vulnerability with a CVSS score of 10.0 (HIGH). Parallels Plesk Small Business Panel 10.2.0 omits the Content-Type header's charset parameter for certain resources, which might allow remote attackers to have an unspecified impact by leveraging an i...

How severe is CVE-2011-4761?

CVE-2011-4761 has been rated HIGH with a CVSS base score of 10.0/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2011-4761?

Check the references section above for vendor advisories and patch information. Affected products include: Parallels Parallels Plesk Small Business Panel.