CVE-2011-4742 describes an information disclosure vulnerability in Parallels Plesk Panel 10.2.0 build 20110407.20, where certain web pages within the Control Panel inadvertently expose email addresses not intended for public access. This allows remote attackers to obtain potentially sensitive information by simply viewing these pages, specifically impacting various Microsoft, Parallels, and Red Hat enterprise_linux and Windows environments running the affected Plesk Panel version. The vulnerability has a CVSS score of 5.0, indicating a medium severity, with a low attack complexity and no authentication required, but only results in partial confidentiality impact. There is no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage surrounding this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
10.2.0_build20110407.20CPE matchmatch criteria | cpe:2.3:a:parallels:parallels_plesk_panel:10.2.0_build20110407.20:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:L/Au:N/C:P/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.