VYPR

Onyx

by Plesk

CVEs (2)

  • CVE-2023-43784HigSep 22, 2023
    risk 0.49cvss 7.5epss 0.00

    Plesk Onyx 17.8.11 has accessKeyId and secretAccessKey fields that are related to an Amazon AWS Firehose component. NOTE: the vendor's position is that there is no security threat.

  • CVE-2020-11584MedAug 3, 2020
    risk 0.40cvss 6.1epss 0.01

    A GET-based XSS reflected vulnerability in Plesk Onyx 17.8.11 allows remote unauthenticated users to inject arbitrary JavaScript, HTML, or CSS via a GET parameter.