CVE-2011-4747: Medium severity plesk vulnerability
The billing system for Parallels Plesk Panel 10.3.1build1013110726.09 does not prevent the use of weak ciphers for SSL sessions, which makes it easier for remote attackers to defeat cryptographic protection mechanisms via a crafted CipherSuite list.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2011-4747?
CVE-2011-4747 is classified as a medium severity vulnerability due to its potential to weaken SSL session security.
How do I fix CVE-2011-4747?
To fix CVE-2011-4747, update Parallels Plesk Panel to a version that disables weak ciphers in SSL sessions.
What systems are affected by CVE-2011-4747?
CVE-2011-4747 specifically affects Parallels Plesk Panel version 10.3.1_build1013110726.09.
What are the consequences of CVE-2011-4747?
Exploitation of CVE-2011-4747 could allow attackers to intercept or decrypt sensitive information transmitted over SSL connections.
Is there a workaround for CVE-2011-4747?
A temporary workaround for CVE-2011-4747 is to configure the server to restrict the use of weak ciphers until a patch is applied.