CVE-2011-4744: Critical severity plesk vulnerability
The Control Panel in Parallels Plesk Panel 10.2.0 build 20110407.20 sends incorrect Content-Type headers for certain resources, which might allow remote attackers to have an unspecified impact by leveraging an interpretation conflict involving smb/admin-home/featured-applications/ and certain other files. NOTE: it is possible that only clients, not the Plesk product, could be affected by this issue.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2011-4744?
CVE-2011-4744 is considered a medium severity vulnerability due to the potential for remote exploitation.
How do I fix CVE-2011-4744?
To mitigate CVE-2011-4744, update your Parallels Plesk Panel to the latest version available.
What types of attacks are possible with CVE-2011-4744?
CVE-2011-4744 may allow remote attackers to leverage an interpretation conflict for cross-site scripting or other attacks.
Which versions of Parallels Plesk Panel are affected by CVE-2011-4744?
CVE-2011-4744 specifically affects Parallels Plesk Panel version 10.2.0 build 20110407.20.
Is CVE-2011-4744 present in Windows or Red Hat systems?
CVE-2011-4744 is not present in Microsoft Windows or Red Hat Enterprise Linux systems.