CVE-2012-1557: Parallels Plesk Panel
High severity, CVSS 7.5. EPSS: 6% chance of exploitation in the next 30 days.
SQL injection vulnerability in admin/plib/api-rpc/Agent.php in Parallels Plesk Panel 7.x and 8.x before 8.6 MU#2, 9.x before 9.5 MU#11, 10.0.x before MU#13, 10.1.x before MU#22, 10.2.x before MU#16, and 10.3.x before MU#5 allows remote attackers to execute arbitrary SQL commands via unspecified vectors, as exploited in the wild in March 2012.
Affected products
- Parallels Parallels Plesk Panel: version 7.0 only; version 7.6.1 only; version 8.0 only; version 8.1 only; version 8.2 only; version 8.3 only; …
Published 2012-03-12. Last modified 2026-06-16.