CVE-2012-1823 | Parallels Plesk up to 9.5.4 Request /phppath/php command injection (VU#520827 / EDB-29290)
A vulnerability identified as critical has been detected in Parallels Plesk up to 9.5.4. This affects an unknown part of the file /phppath/php of the component Request Handler. The manipulation leads to command injection.
This vulnerability is documented as CVE-2012-1823. The attack can be initiated remotely. Additionally, an exploit exists.
The existence of this vulnerability is still disputed at present.
You should upgrade the affected component.