CVE-2011-4766 is a disputed information disclosure vulnerability affecting the Site Editor feature in Parallels Plesk Small Business Panel 10.2.0, where remote attackers could allegedly obtain ASP source code via a direct request to a specific JavaScript configuration file. While the issue carries a CVSS score of 5.0 indicating a low-complexity network attack vector with partial confidentiality impact, the vulnerability is formally disputed because the referenced ASP code resides solely within a JavaScript comment and is likely not executable. There is currently no evidence of active exploitation, no public exploit code available in standard repositories, and the vulnerability remains inactive with no significant community discussion.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
10.2.0CPE matchmatch criteria | cpe:2.3:a:parallels:parallels_plesk_small_business_panel:10.2.0:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:L/Au:N/C:P/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.