Parallels Plesk Small Business Panel 10.2.0 receives cleartext password input over HTTP, which allows remote attackers to obtain sensitive information by sniffing the network, as demonstrated by forms in smb/auth and certain other files.
- http://xss.cx/examples/plesk-reports/plesk-10.2.0.html
No PoCs found on GitHub currently.