CVE-2011-4743: Critical severity plesk vulnerability
The Control Panel in Parallels Plesk Panel 10.2.0 build 20110407.20 omits the Content-Type header's charset parameter for certain resources, which might allow remote attackers to have an unspecified impact by leveraging an interpretation conflict involving smb/user/create and certain other files. NOTE: it is possible that only clients, not the Plesk product, could be affected by this issue.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2011-4743?
CVE-2011-4743 is considered a medium severity vulnerability due to potential exploitation impacts.
How do I fix CVE-2011-4743?
To fix CVE-2011-4743, ensure that you apply the latest security patches provided by Parallels for the Plesk Panel.
What types of systems are affected by CVE-2011-4743?
CVE-2011-4743 affects Parallels Plesk Panel version 10.2.0 build 20110407.20.
What could an attacker potentially exploit in CVE-2011-4743?
An attacker might exploit CVE-2011-4743 by leveraging an interpretation conflict that could lead to unauthorized actions.
Is CVE-2011-4743 related to cross-site scripting vulnerabilities?
Yes, CVE-2011-4743 is associated with reflected cross-site scripting vulnerabilities due to improper Content-Type header handling.