CVE-2011-4758: Parallels Plesk Small Business Panel

Medium severity, CVSS 5.0. EPSS: 1.1% chance of exploitation in the next 30 days.

Parallels Plesk Small Business Panel 10.2.0 receives cleartext password input over HTTP, which allows remote attackers to obtain sensitive information by sniffing the network, as demonstrated by forms in smb/auth and certain other files.

Affected products

  • Parallels Parallels Plesk Small Business Panel: version 10.2.0 only

Published 2011-12-16. Last modified 2026-06-16.