CVE-2021-45007: CSRF
Published Feb 20, 2022
·Updated
DISPUTED Plesk 18.0.37 is affected by a Cross Site Request Forgery (CSRF) vulnerability that allows an attacker to insert data on the user and admin panel. NOTE: the vendor states that this is only a site-specific problem on websites of one or more Plesk users.
Affected Software
1 affected component
Plesk Plesk=18.0.37
Event History
Feb 20, 2022
CVE Published
via MITRE·11:13 AM
Data Sourced
via MITRE·11:13 AM
Description
Disputed
12:15 PM
Frequently Asked Questions
1
What is the vulnerability ID for this Plesk vulnerability?
The vulnerability ID for this Plesk vulnerability is CVE-2021-45007.
2
What is the severity of CVE-2021-45007?
The severity of CVE-2021-45007 is medium with a CVSS score of 6.5.
3
What is affected by CVE-2021-45007?
Plesk 18.0.37 is affected by CVE-2021-45007.
4
What is the impact of CVE-2021-45007?
CVE-2021-45007 allows an attacker to insert data on the user and admin panel of affected Plesk installations.
5
Is there a fix available for CVE-2021-45007?
There is currently no fix available for CVE-2021-45007.