MEDIUM · 5.0

CVE-2011-4767

The Site Editor (aka SiteBuilder) feature in Parallels Plesk Small Business Panel 10.2.0 has web pages containing e-mail addresses that are not intended for correspondence about the local application ...

Vulnerability Description

The Site Editor (aka SiteBuilder) feature in Parallels Plesk Small Business Panel 10.2.0 has web pages containing e-mail addresses that are not intended for correspondence about the local application deployment, which allows remote attackers to obtain potentially sensitive information by reading a page, as demonstrated by js/Wizard/Status.js and certain other files.

CVSS Score

5.0

MEDIUM

AV:N/AC:L/Au:N/C:P/I:N/A:N
Confidentiality
PARTIAL
Integrity
NONE
Availability
NONE

Affected Products

VendorProductVersions
ParallelsParallels Plesk Small Business Panel10.2.0

Related Weaknesses (CWE)

References

FAQ

What is CVE-2011-4767?

CVE-2011-4767 is a vulnerability with a CVSS score of 5.0 (MEDIUM). The Site Editor (aka SiteBuilder) feature in Parallels Plesk Small Business Panel 10.2.0 has web pages containing e-mail addresses that are not intended for correspondence about the local application ...

How severe is CVE-2011-4767?

CVE-2011-4767 has been rated MEDIUM with a CVSS base score of 5.0/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2011-4767?

Check the references section above for vendor advisories and patch information. Affected products include: Parallels Parallels Plesk Small Business Panel.