| ID | CVE-2026-64637 | ||||||
| Sažetak | Improper privilege management in the XML-RPC API of Plesk before 18.0.80, allows an authenticated reseller to obtain an administrative session for the root user account. | ||||||
| Reference | |||||||
| CVSS |
|
||||||
| Pristup |
|
||||||
| Impact |
|
||||||
| CVSS vektor | CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H | ||||||
| Zadnje važnije ažuriranje | 07-08-2026 - 19:18 | ||||||
| Objavljeno | 07-08-2026 - 18:17 |

