7.5
CVSSv2

CVE-2012-1557

Published: 12/03/2012 Updated: 11/01/2018
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

SQL injection vulnerability in admin/plib/api-rpc/Agent.php in Parallels Plesk Panel 7.x and 8.x prior to 8.6 MU#2, 9.x prior to 9.5 MU#11, 10.0.x before MU#13, 10.1.x before MU#22, 10.2.x before MU#16, and 10.3.x before MU#5 allows remote malicious users to execute arbitrary SQL commands via unspecified vectors, as exploited in the wild in March 2012.

Vulnerable Product Search on Vulmon Subscribe to Product

parallels parallels plesk panel 7.0

parallels parallels plesk panel 8.6

parallels parallels plesk panel 7.6.1

parallels parallels plesk panel 8.0

parallels parallels plesk panel 8.3

parallels parallels plesk panel 8.4

parallels parallels plesk panel 8.1

parallels parallels plesk panel 8.2

parallels parallels plesk panel 9.0

parallels parallels plesk panel 9.2

parallels parallels plesk panel 9.5.4

parallels parallels plesk panel 9.3

parallels parallels plesk panel 9.5

parallels parallels plesk panel 10.0.1

parallels parallels plesk panel 10.1.1

parallels parallels plesk panel 10.2.0

parallels parallels plesk panel 10.3.1