Onyx
Plesk · 2 CVEs
CVE-2023-43784
HIGH
Plesk Onyx 17.8.11 has accessKeyId and secretAccessKey fields that are related to an Amazon AWS Firehose component. NOT…
Sep 22, 2023
CVE-2020-11584
MEDIUM
A GET-based XSS reflected vulnerability in Plesk Onyx 17.8.11 allows remote unauthenticated users to inject arbitrary J…
Aug 3, 2020
| CVE ID | Description | Severity | EPSS | Published |
|---|---|---|---|---|
| CVE-2023-43784 | Plesk Onyx 17.8.11 has accessKeyId and secretAccessKey fields that are related to an Amazon AWS Firehose component. NOTE: the vendor's position is that there i… | HIGH | 0.56% | Sep 22, 2023 |
| CVE-2020-11584 | A GET-based XSS reflected vulnerability in Plesk Onyx 17.8.11 allows remote unauthenticated users to inject arbitrary JavaScript, HTML, or CSS via a GET parame… | MEDIUM | 0.91% | Aug 3, 2020 |
Showing 1 to 2 of 2 CVEs