VendorsPleskonyx17.8.11
Vulnerabilities

Plesk Onyx 17.8.11

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2CVEs
CVE-2023-43784
Plesk Onyx 17.8.11 has accessKeyId and secretAccessKey fields that are related to an Amazon AWS Firehose component. NOTE: the vendor's position is that there is no security threat.
Published 2023-09-22 · Modified
7.5EPSS 0.006
CVE-2020-11584
A GET-based XSS reflected vulnerability in Plesk Onyx 17.8.11 allows remote unauthenticated users to inject arbitrary JavaScript, HTML, or CSS via a GET parameter.
Published 2020-08-03 · Modified
6.1EPSS 0.009