The default configuration of Parallels Plesk Panel 9.0.x and 9.2.x on UNIX, and Small Business Panel 10.x on UNIX, has an improper ScriptAlias directive for phppath, which makes it easier for remote attackers to execute arbitrary code via a crafted request, a different vulnerability than CVE-2012-1823.
Metrics
Affected Vendors & Products
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.

Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-09-16T16:42:56.123Z
Reserved: 2013-07-18T00:00:00Z
Link: CVE-2013-4878

No data.

Status : Deferred
Published: 2013-07-18T16:51:56.227
Modified: 2025-04-11T00:51:21.963
Link: CVE-2013-4878

No data.

No data.