CVE-2011-4734

Parallels Plesk Panel 10.2.0 build 20110407.20 - SQL Injection via PHP Script Input

Title source: llm
STIX 2.1

Description

Multiple SQL injection vulnerabilities in the Control Panel in Parallels Plesk Panel 10.2.0 build 20110407.20 allow remote attackers to execute arbitrary SQL commands via crafted input to a PHP script, as demonstrated by file-manager/ and certain other files.

Scores

EPSS 0.0112
EPSS Percentile 62.3%

Details

CWE
CWE-89
Status published
Products (1)
parallels/parallels_plesk_panel 10.2.0_build20110407.20
Published Dec 16, 2011
Tracked Since Feb 18, 2026