Vulnerabilities > Parallels > Parallels Desktop > High

DATE CVE VULNERABILITY TITLE RISK
2024-06-20 CVE-2024-6153 Unspecified vulnerability in Parallels Desktop
Parallels Desktop Updater Protection Mechanism Failure Software Downgrade Vulnerability.
local
low complexity
parallels
7.8
2021-10-25 CVE-2021-34854 Uncontrolled Memory Allocation vulnerability in Parallels Desktop 16.1.3
This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 16.1.3 (49160).
local
low complexity
parallels CWE-789
7.2
2021-10-25 CVE-2021-34856 Out-of-bounds Write vulnerability in Parallels Desktop 16.1.3
This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 16.1.3 (49160).
local
low complexity
parallels CWE-787
8.8
2021-10-25 CVE-2021-34864 Unspecified vulnerability in Parallels Desktop 16.1.3
This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 16.1.3 (49160).
local
low complexity
parallels
8.8
2021-04-29 CVE-2021-31426 Integer Overflow or Wraparound vulnerability in Parallels Desktop 16.1.249151
This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 16.1.2-49151.
local
low complexity
parallels CWE-190
7.2
2021-04-29 CVE-2021-31425 Integer Overflow or Wraparound vulnerability in Parallels Desktop 16.1.249151
This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 16.1.2-49151.
local
low complexity
parallels CWE-190
7.2
2020-03-23 CVE-2020-8875 Out-of-bounds Write vulnerability in Parallels Desktop
This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 15.1.2-47123.
local
low complexity
parallels CWE-787
7.2
2020-01-07 CVE-2019-17148 Improper Privilege Management vulnerability in Parallels Desktop 14.1.3
This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop Parallels Desktop version 14.1.3 (45485).
local
low complexity
parallels CWE-269
7.2
2007-03-02 CVE-2007-1222 Local Security vulnerability in Parallels Desktop for Mac OS X
Parallels Desktop for Mac before 20070216 implements Drag and Drop by sharing the entire host filesystem as the .psf share, which allows local users of the guest operating system to write arbitrary files to the host filesystem, and execute arbitrary code via launchd by writing a plist file to a LaunchAgents directory.
local
low complexity
apple parallels
7.2