First published: Fri Dec 16 2011(Updated: )
Parallels Plesk Small Business Panel 10.2.0 sends incorrect Content-Type headers for certain resources, which might allow remote attackers to have an unspecified impact by leveraging an interpretation conflict involving smb/app/top-categories-data/ and certain other files. NOTE: it is possible that only clients, not the SmarterStats product, could be affected by this issue.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Parallels Parallels Plesk Small Business Panel | =10.2.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2011-4762 is classified as a potentially high-risk vulnerability due to its ability to allow remote attackers to exploit incorrect Content-Type headers.
To mitigate CVE-2011-4762, users should upgrade to a patched version of Parallels Plesk Small Business Panel that addresses this header issue.
CVE-2011-4762 specifically affects Parallels Plesk Small Business Panel version 10.2.0.
Exploitations of CVE-2011-4762 could lead to unauthorized access or manipulation of content due to incorrect header interpretation.
To confirm vulnerability to CVE-2011-4762, check if you are running Parallels Plesk Small Business Panel version 10.2.0 and assess your Content-Type configurations.