Plesk Server Administrator (PSA) 1.0 allows remote attackers to obtain PHP source code via an HTTP request containing the target's IP address and a valid account name for the domain.Referenceshttp://www.securityfocus.com/archive/1/246861http://www.securityfocus.com/bid/3737http://www.iss.net/security_center/static/7735.php