Search Results (Refine Search)
- Results Type: Overview
- Keyword (text search): cpe:2.3:a:parallels:parallels_plesk_panel:11.0.9:*:*:*:*:*:*:*
- CPE Name Search: true
Vuln ID | Summary | CVSS Severity |
---|---|---|
CVE-2013-0133 |
Untrusted search path vulnerability in /usr/local/psa/admin/sbin/wrapper in Parallels Plesk Panel 11.0.9 allows local users to gain privileges via a crafted PATH environment variable. Published: April 18, 2013; 2:55:03 PM -0400 |
V3.x:(not available) V2.0: 7.2 HIGH |
CVE-2013-0132 |
The suexec implementation in Parallels Plesk Panel 11.0.9 contains a cgi-wrapper whitelist entry, which allows user-assisted remote attackers to execute arbitrary PHP code via a request containing crafted environment variables. Published: April 18, 2013; 2:55:01 PM -0400 |
V3.x:(not available) V2.0: 6.8 MEDIUM |