Vulnerabilities > Parallels > Medium

DATE CVE VULNERABILITY TITLE RISK
2024-06-20 CVE-2024-6154 Out-of-bounds Write vulnerability in Parallels Desktop
Parallels Desktop Toolgate Heap-based Buffer Overflow Local Privilege Escalation Vulnerability.
local
low complexity
parallels CWE-787
6.7
2022-05-16 CVE-2022-30777 Cross-site Scripting vulnerability in Parallels H-Sphere 3.6.2
Parallels H-Sphere 3.6.1713 allows XSS via the index_en.php from parameter.
network
low complexity
parallels CWE-79
6.1
2021-10-25 CVE-2021-34855 Use of Uninitialized Resource vulnerability in Parallels Desktop 16.1.3
This vulnerability allows local attackers to disclose sensitive information on affected installations of Parallels Desktop 16.1.3 (49160).
local
low complexity
parallels CWE-908
6.5
2021-04-29 CVE-2021-31427 Improper Locking vulnerability in Parallels Desktop 15.1.547309
This vulnerability allows local attackers to disclose sensitive information on affected installations of Parallels Desktop 15.1.5-47309.
local
high complexity
parallels CWE-667
5.6
2021-04-29 CVE-2021-31430 Out-of-bounds Read vulnerability in Parallels Desktop 15.1.547309
This vulnerability allows local attackers to disclose sensitive information on affected installations of Parallels Desktop 15.1.5-47309.
local
low complexity
parallels CWE-125
6.0
2021-04-29 CVE-2021-31421 Path Traversal vulnerability in Parallels Desktop 16.1.149141
This vulnerability allows local attackers to delete arbitrary files on affected installations of Parallels Desktop 16.1.1-49141.
local
low complexity
parallels CWE-22
6.0
2021-04-29 CVE-2021-31419 Use of Uninitialized Resource vulnerability in Parallels Desktop 15.1.447270
This vulnerability allows local attackers to disclose sensitive information on affected installations of Parallels Desktop 15.1.4-47270.
local
low complexity
parallels CWE-908
6.5
2021-04-29 CVE-2021-31423 Use of Uninitialized Resource vulnerability in Parallels Desktop 15.1.547309
This vulnerability allows local attackers to disclose sensitive information on affected installations of Parallels Desktop 15.1.5-47309.
local
low complexity
parallels CWE-908
6.0
2021-04-29 CVE-2021-31432 Out-of-bounds Read vulnerability in Parallels Desktop 15.1.547309
This vulnerability allows local attackers to disclose sensitive information on affected installations of Parallels Desktop 15.1.5-47309.
local
low complexity
parallels CWE-125
6.0
2021-04-29 CVE-2021-31431 Out-of-bounds Read vulnerability in Parallels Desktop 15.1.547309
This vulnerability allows local attackers to disclose sensitive information on affected installations of Parallels Desktop 15.1.5-47309.
local
low complexity
parallels CWE-125
6.0