Parallels
156 known vulnerabilities
Top Products
A directory traversal vulnerability exists in the PVMP package unpacking functionality of Parallels Desktop for Mac vers
A privilege escalation vulnerability exists in the Snapshot functionality of Parallels Desktop for Mac version 20.1.1 (b
A privilege escalation vulnerability exists in the Snapshot functionality of Parallels Desktop for Mac version 20.1.1 (b
A privilege escalation vulnerability exists in the virtual machine archive restoration functionality of Parallels Deskto
Parallels Desktop Technical Data Reporter Link Following Local Privilege Escalation Vulnerability. This vulnerability a
Improper privilege management vulnerability in Parallels Desktop Software, which affects versions earlier than 19.3.0. A
Parallels Desktop Toolgate Heap-based Buffer Overflow Local Privilege Escalation Vulnerability. This vulnerability allow
Parallels Desktop Updater Protection Mechanism Failure Software Downgrade Vulnerability. This vulnerability allows local
Parallels Desktop Updater Improper Verification of Cryptographic Signature Local Privilege Escalation Vulnerability. Thi
Parallels Desktop virtio-gpu Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote a
Parallels Desktop Updater Link Following Local Privilege Escalation Vulnerability. This vulnerability allows local attac
Parallels Desktop Toolgate XML Injection Local Privilege Escalation Vulnerability. This vulnerability allows local attac
Parallels Desktop Toolgate Time-Of-Check Time-Of-Use Local Privilege Escalation Vulnerability. This vulnerability allows
Parallels Desktop Toolgate Directory Traversal Local Privilege Escalation Vulnerability. This vulnerability allows local
Parallels Desktop Updater Improper Initialization Local Privilege Escalation Vulnerability. This vulnerability allows lo
Parallels Desktop Updater Improper Initialization Local Privilege Escalation Vulnerability. This vulnerability allows lo
Parallels Desktop Updater Time-Of-Check Time-Of-Use Local Privilege Escalation Vulnerability. This vulnerability allows
Parallels Desktop Service Improper Initialization Local Privilege Escalation Vulnerability. This vulnerability allows lo
The Remote Application Server in Parallels RAS before 19.2.23975 does not segment virtualized applications from the serv
The Web Client of Parallels Remote Application Server v18.0 is vulnerable to Host Header Injection attacks. This vulnera
This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Access 6.5.4 (39
This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Access 6.5.4 (39
This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Access 6.5.3 (39
This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Access 6.5.4 (39
This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop Parallel
This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop Parallel
This vulnerability allows local attackers to disclose sensitive information on affected installations of Parallels Deskt
This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 17.1.1 (
This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 16.5.1 (
This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 16.5.0 (
Parallels H-Sphere 3.6.1713 allows XSS via the index_en.php from parameter.
This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 16.1.3-4
This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 16.1.3-4
This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 16.1.3-4
Parallels Remote Application Server (RAS) allows a local attacker to retrieve certain profile password in clear text for
This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 16.1.3 (
This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 16.1.3 (
This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 16.1.3 (
This vulnerability allows local attackers to disclose sensitive information on affected installations of Parallels Deskt
This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 16.1.3 (
This vulnerability allows local attackers to disclose sensitive information on affected installations of Parallels Deskt
This vulnerability allows local attackers to disclose sensitive information on affected installations of Parallels Deskt
This vulnerability allows local attackers to disclose sensitive information on affected installations of Parallels Deskt
This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 15.1.5-4
This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 15.1.5-4
This vulnerability allows local attackers to disclose sensitive information on affected installations of Parallels Deskt
This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 16.1.2-4
This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 16.1.2-4
This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 15.1.5-4
This vulnerability allows local attackers to disclose sensitive information on affected installations of Parallels Deskt
Frequently Asked Questions
How many CVEs affect Parallels?
Parallels has 156 CVE records in our database, including 2 critical and 87 high severity vulnerabilities.
What are the most severe Parallels vulnerabilities?
Parallels has 2 critical severity (CVSS 9.0+) and 87 high severity (CVSS 7.0-8.9) vulnerabilities. Review the list above sorted by publication date to find the most recent high-severity issues.
How can I scan for Parallels vulnerabilities?
CyberStrike's AI-powered security agents automatically detect vulnerabilities in Parallels products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.
Detect Parallels Vulnerabilities
CyberStrike scans your infrastructure for Parallels vulnerabilities and provides real-time remediation guidance.
Get Started