CVE-2011-4748: Parallels Plesk Panel
Medium severity, CVSS 5.0. EPSS: 1.1% chance of exploitation in the next 30 days.
The billing system for Parallels Plesk Panel 10.3.1_build1013110726.09 has web pages containing e-mail addresses that are not intended for correspondence about the local application deployment, which allows remote attackers to obtain potentially sensitive information by reading a page, as demonstrated by js/ajax/core/ajax.inc.js and certain other files.
Affected products
- Parallels Parallels Plesk Panel: version 10.3.1_build1013110726.09 only
Published 2011-12-16. Last modified 2026-06-16.