Vulnerability index

Browse CVEs

99 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Parallels Desktop MEDIUM 6.5
CVE-2021-31419

This vulnerability allows local attackers to disclose sensitive information on affected installations of Parallels Desktop 15.1.4-47270. An attacker …

Mitigation only
Fix from $1,600 2021-04-29
Parallels Desktop MEDIUM 6.0
CVE-2021-31421

This vulnerability allows local attackers to delete arbitrary files on affected installations of Parallels Desktop 16.1.1-49141. An attacker must fir…

Mitigation only
Fix from $1,600 2021-04-29
Parallels Desktop MEDIUM 6.0
CVE-2021-31423

This vulnerability allows local attackers to disclose sensitive information on affected installations of Parallels Desktop 15.1.5-47309. An attacker …

Mitigation only
Fix from $1,600 2021-04-29
Parallels Desktop MEDIUM 6.0
CVE-2021-31430

This vulnerability allows local attackers to disclose sensitive information on affected installations of Parallels Desktop 15.1.5-47309. An attacker …

Mitigation only
Fix from $1,600 2021-04-29
Parallels Desktop MEDIUM 6.0
CVE-2021-31431

This vulnerability allows local attackers to disclose sensitive information on affected installations of Parallels Desktop 15.1.5-47309. An attacker …

Mitigation only
Fix from $1,600 2021-04-29
Parallels Desktop MEDIUM 6.0
CVE-2021-31432

This vulnerability allows local attackers to disclose sensitive information on affected installations of Parallels Desktop 15.1.5-47309. An attacker …

Mitigation only
Fix from $1,600 2021-04-29
Parallels Desktop MEDIUM 5.6
CVE-2021-31427

This vulnerability allows local attackers to disclose sensitive information on affected installations of Parallels Desktop 15.1.5-47309. An attacker …

Mitigation only
Fix from $1,600 2021-04-29
Parallels Desktop HIGH 8.2
CVE-2021-27278

This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 16.1.1-49141. An attacker must first …

Mitigation only
Fix from $1,950 2021-04-22
Parallels Desktop HIGH 7.8
CVE-2021-27259

This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 16.0.1-48919. An attacker must first …

Mitigation only
Fix from $1,950 2021-04-14
Parallels Desktop HIGH 8.8
CVE-2021-27242

This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 16.0.1-48919. An attacker must first …

Mitigation only
Fix from $1,950 2021-03-29
Parallels Desktop HIGH 8.8
CVE-2021-27243

This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 16.0.1-48919. An attacker must first …

Mitigation only
Fix from $1,950 2021-03-29
Parallels Desktop MEDIUM 6.5
CVE-2021-27244

This vulnerability allows local attackers to disclose sensitive information on affected installations of Parallels Desktop 16.0.1-48919. An attacker …

Mitigation only
Fix from $1,600 2021-03-29
Remote Application Server MEDIUM 5.3
CVE-2020-35710

Parallels Remote Application Server (RAS) 18 allows remote attackers to discover an intranet IP address because submission of the login form (even wi…

No fix yet
Fix from $1,600 2020-12-25
Remote Application Server CRITICAL 9.9
CVE-2020-15860

Parallels Remote Application Server (RAS) 17.1.1 has a Business Logic Error causing remote code execution. It allows an authenticated user to execute…

No fix yet
Fix from $2,300 2020-07-24
Parallels HIGH 7.5
CVE-2020-7213

Parallels 13 uses cleartext HTTP as part of the update process, allowing man-in-the-middle attacks. Users of out-of-date versions are presented with …

No fix yet
Fix from $1,950 2020-01-21
Parallels Desktop HIGH 7.8
CVE-2019-17148

This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop Parallels Desktop version 14.1.3 (454…

Mitigation only
Fix from $1,950 2020-01-07
Parallels Plesk Panel MEDIUM 6.1
CVE-2019-18793

Parallels Plesk Panel 9.5 allows XSS in target/locales/tr-TR/help/index.htm? via the "fileName" parameter.

No fix yet
Fix from $1,600 2019-11-13
Remote Application Server HIGH 7.5
CVE-2017-9447

In the web interface of Parallels Remote Application Server (RAS) 15.5 Build 16140, a vulnerability exists due to improper validation of the file pat…

No fix yet
Fix from $1,950 2018-02-28
Parallels Plesk Panel HIGH 7.5
CVE-2013-4878EPSS 31%

The default configuration of Parallels Plesk Panel 9.0.x and 9.2.x on UNIX, and Small Business Panel 10.x on UNIX, has an improper ScriptAlias direct…

Mitigation only
Fix from $1,950 2013-07-18
Parallels Plesk Panel HIGH 7.2
CVE-2013-0133

Untrusted search path vulnerability in /usr/local/psa/admin/sbin/wrapper in Parallels Plesk Panel 11.0.9 allows local users to gain privileges via a …

Mitigation only
Fix from $1,950 2013-04-18
Parallels Plesk Panel MEDIUM 6.8
CVE-2013-0132

The suexec implementation in Parallels Plesk Panel 11.0.9 contains a cgi-wrapper whitelist entry, which allows user-assisted remote attackers to exec…

Mitigation only
Fix from $1,600 2013-04-18
H Sphere MEDIUM 6.8
CVE-2012-5004

Multiple cross-site request forgery (CSRF) vulnerabilities in Parallels H-Sphere 3.3 Patch 1 allow remote attackers to hijack the authentication of a…

No fix yet
Fix from $1,600 2012-09-19
Parallels Plesk Panel HIGH 7.5
CVE-2012-1557EPSS 6%

SQL injection vulnerability in admin/plib/api-rpc/Agent.php in Parallels Plesk Panel 7.x and 8.x before 8.6 MU#2, 9.x before 9.5 MU#11, 10.0.x before…

Mitigation only
Fix from $1,950 2012-03-12
Parallels Plesk Panel HIGH 9.3
CVE-2011-4851

The Control Panel in Parallels Plesk Panel 10.4.4_build20111103.18 generates a password form field without disabling the autocomplete feature, which …

Mitigation only
Fix from $1,950 2011-12-16
Parallels Plesk Panel HIGH 9.3
CVE-2011-4854

The Control Panel in Parallels Plesk Panel 10.4.4_build20111103.18 does not ensure that Content-Type HTTP headers match the corresponding Content-Typ…

Mitigation only
Fix from $1,950 2011-12-16
Parallels Plesk Panel HIGH 9.3
CVE-2011-4855

The Control Panel in Parallels Plesk Panel 10.4.4_build20111103.18 omits the Content-Type header's charset parameter for certain resources, which mig…

Mitigation only
Fix from $1,950 2011-12-16
Parallels Plesk Panel HIGH 9.3
CVE-2011-4856

The Control Panel in Parallels Plesk Panel 10.4.4_build20111103.18 sends incorrect Content-Type headers for certain resources, which might allow remo…

Mitigation only
Fix from $1,950 2011-12-16
Parallels Plesk Small Business Panel HIGH 10.0
CVE-2011-4768

The Site Editor (aka SiteBuilder) feature in Parallels Plesk Small Business Panel 10.2.0 omits the Content-Type header's charset parameter for certai…

Mitigation only
Fix from $1,950 2011-12-16
Parallels Plesk Panel HIGH 7.5
CVE-2011-4847

SQL injection vulnerability in the Control Panel in Parallels Plesk Panel 10.4.4_build20111103.18 allows remote attackers to execute arbitrary SQL co…

Mitigation only
Fix from $1,950 2011-12-16
Parallels Plesk Small Business Panel MEDIUM 5.0
CVE-2011-4766

The Site Editor (aka SiteBuilder) feature in Parallels Plesk Small Business Panel 10.2.0 allows remote attackers to obtain ASP source code via a dire…

Mitigation only
Fix from $1,600 2011-12-16