Vulnerabilities > Parallels > Parallels Desktop

DATE CVE VULNERABILITY TITLE RISK
2024-06-21 CVE-2024-6240 Improper Privilege Management vulnerability in Parallels Desktop
Improper privilege management vulnerability in Parallels Desktop Software, which affects versions earlier than 19.3.0.
network
low complexity
parallels CWE-269
critical
10.0
2024-06-20 CVE-2024-6153 Unspecified vulnerability in Parallels Desktop
Parallels Desktop Updater Protection Mechanism Failure Software Downgrade Vulnerability.
local
low complexity
parallels
7.8
2024-06-20 CVE-2024-6154 Out-of-bounds Write vulnerability in Parallels Desktop
Parallels Desktop Toolgate Heap-based Buffer Overflow Local Privilege Escalation Vulnerability.
local
low complexity
parallels CWE-787
6.7
2022-07-18 CVE-2022-34889 Out-of-bounds Read vulnerability in Parallels Desktop 17.1.1(51537)
This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 17.1.1 (51537).
local
low complexity
parallels CWE-125
8.2
2022-07-18 CVE-2022-34890 Untrusted Pointer Dereference vulnerability in Parallels Desktop 17.1.1(51537)
This vulnerability allows local attackers to disclose sensitive information on affected installations of Parallels Desktop 17.1.1 (51537).
local
low complexity
parallels CWE-822
8.8
2022-07-18 CVE-2022-34891 Unspecified vulnerability in Parallels Desktop 17.1.1
This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop Parallels Desktop 17.1.1.
local
low complexity
parallels
7.8
2022-07-18 CVE-2022-34892 Race Condition vulnerability in Parallels Desktop 17.1.1
This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop Parallels Desktop 17.1.1.
local
low complexity
parallels CWE-362
7.8
2022-07-15 CVE-2021-34986 Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in Parallels Desktop 16.5.0
This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 16.5.0 (49183).
local
low complexity
parallels CWE-367
7.8
2022-07-15 CVE-2021-34987 Unspecified vulnerability in Parallels Desktop 16.5.1
This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 16.5.1 (49187).
local
low complexity
parallels
8.2
2021-10-25 CVE-2021-34854 Allocation of Resources Without Limits or Throttling vulnerability in Parallels Desktop 16.1.3
This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 16.1.3 (49160).
local
low complexity
parallels CWE-770
7.8