PT-2011-5076 · Parallels · Parallels Plesk Panel

Publicado

2011-12-16

·

Atualizado

2019-04-22

·

CVE-2011-4746

CVSS v2.0

5.0

Média

VetorAV:N/AC:L/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions Parallels Plesk Panel version 10.3.1 build1013110726.09
Description The issue concerns the billing system of Parallels Plesk Panel, which fails to disable the SSL 2.0 protocol. This oversight allows remote attackers to exploit weaknesses in the protocol, making it easier to conduct spoofing attacks.
Recommendations For Parallels Plesk Panel version 10.3.1 build1013110726.09, consider disabling the SSL 2.0 protocol to prevent exploitation. As a temporary workaround, restrict access to the billing system until a more permanent solution is available.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2011-4746

Produtos afetados

Parallels Plesk Panel