vendor:
Plesk Sitebuilder
by:
alieye
9,3
CVSS
HIGH
Bypass Loginpage, Uploading Shell, Arbitrary File Download
N/A
CWE
Product Name: Plesk Sitebuilder
Affected Version From: Parallels® Plesk panel 9.5 - Parallels® Plesk Sitebuilder 4.5 (Copyright 2004-2010)
Affected Version To: Parallels® Plesk panel 9.5 - Parallels® Plesk Sitebuilder 4.5 (Copyright 2004-2014)
Patch Exists: YES
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows Server 2003
2014
Multiple Vulnerabilities in Parallels® Plesk Sitebuilder
Bypass Loginpage: Change the URL path to http://victim.com:2006/wizard. Uploading Shell: Rename the shell to shell.asp.gif and capture data with Live HTTP Headers. Replay data with Live HTTP Headers and change the Content-Disposition to shell.asp.asp. Arbitrary File Download: You can download any file from your target by using the URL http://victim.com:2006/Wizard/EditPage/ImageManager/Site.ashx?s=GUID Sitename created&p=filename
Mitigation:
Update to the latest version of Parallels® Plesk Sitebuilder