Vulnerability index

Browse CVEs

136 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Parallels Desktop MEDIUM 6.5
CVE-2021-27244

This vulnerability allows local attackers to disclose sensitive information on affected installations of Parallels Desktop 16.0.1-48919. An attacker …

Mitigation only
Fix from $1,600 2021-03-29
Remote Application Server MEDIUM 5.3
CVE-2020-35710

Parallels Remote Application Server (RAS) 18 allows remote attackers to discover an intranet IP address because submission of the login form (even wi…

No fix yet
Fix from $1,600 2020-12-25
Parallels Desktop MEDIUM 6.5
CVE-2020-17402

This vulnerability allows local attackers to disclose sensitive information on affected installations of Parallels Desktop 15.1.4 (47270). An attacke…

Fix: 16.0.0+
Fix from $1,600 2020-08-25
Parallels Desktop MEDIUM 6.0
CVE-2020-17401

This vulnerability allows local attackers to disclose sensitive informations on affected installations of Parallels Desktop 15.1.4. An attacker must …

Fix: 16.0.0+
Fix from $1,600 2020-08-25
Parallels Desktop HIGH 8.8
CVE-2020-17392

This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 15.1.3-47255. An attacker must first …

Fix: 16.0.0+
Fix from $1,950 2020-08-25
Parallels Desktop HIGH 8.8
CVE-2020-17396

This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 15.1.4. An attacker must first obtain…

Fix: 16.0.0+
Fix from $1,950 2020-08-25
Parallels Desktop HIGH 8.8
CVE-2020-17399

This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 15.1.4. An attacker must first obtain…

Fix: 16.0.0+
Fix from $1,950 2020-08-25
Parallels Desktop HIGH 8.8
CVE-2020-17400

This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 15.1.4. An attacker must first obtain…

Fix: 16.0.0+
Fix from $1,950 2020-08-25
Parallels Desktop HIGH 8.2
CVE-2020-17395

This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 15.1.4. An attacker must first obtain…

Fix: 16.0.0+
Fix from $1,950 2020-08-25
Parallels Desktop HIGH 8.2
CVE-2020-17397

This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 15.1.4. An attacker must first obtain…

Fix: 16.0.0+
Fix from $1,950 2020-08-25
Parallels Desktop MEDIUM 6.5
CVE-2020-17391

This vulnerability allows local attackers to disclose information on affected installations of Parallels Desktop 15.1.3-47255. An attacker must first…

Fix: 16.0.0+
Fix from $1,600 2020-08-25
Parallels Desktop MEDIUM 6.5
CVE-2020-17393

This vulnerability allows local attackers to disclose information on affected installations of Parallels Desktop 15.1.3-47255. An attacker must first…

Fix: 15.1.4+
Fix from $1,600 2020-08-25
Parallels Desktop MEDIUM 6.5
CVE-2020-17398

This vulnerability allows local attackers to disclose information on affected installations of Parallels Desktop 15.1.4. An attacker must first obtai…

Fix: 16.0.0+
Fix from $1,600 2020-08-25
Parallels Desktop MEDIUM 6.0
CVE-2020-17394

This vulnerability allows local attackers to disclose sensitive information on affected installations of Parallels Desktop 15.1.4. An attacker must f…

Fix: 16.0.0+
Fix from $1,600 2020-08-25
Parallels Desktop HIGH 8.8
CVE-2020-17390

This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 15.1.2-47123. An attacker must first …

Fix: 15.1.4+
Fix from $1,950 2020-08-25
Remote Application Server CRITICAL 9.9
CVE-2020-15860

Parallels Remote Application Server (RAS) 17.1.1 has a Business Logic Error causing remote code execution. It allows an authenticated user to execute…

No fix yet
Fix from $2,300 2020-07-24
Parallels Desktop HIGH 8.8
CVE-2020-8875

This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 15.1.2-47123. An attacker must first …

Fix: 15.1.3+
Fix from $1,950 2020-03-23
Parallels Desktop MEDIUM 6.7
CVE-2020-8871

This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 15.1.0-47107 . An attacker must first…

Fix: 15.1.3+
Fix from $1,600 2020-03-23
Parallels Desktop MEDIUM 6.7
CVE-2020-8873

This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 15.1.2-47123. An attacker must first …

Fix: 15.1.3+
Fix from $1,600 2020-03-23
Parallels Desktop MEDIUM 6.7
CVE-2020-8874

This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 15.1.2-47123. An attacker must first …

Fix: 15.1.3+
Fix from $1,600 2020-03-23
Parallels Desktop MEDIUM 5.5
CVE-2020-8876

This vulnerability allows local attackers to disclose information on affected installations of Parallels Desktop 15.1.2-47123. An attacker must first…

Fix: 15.1.3+
Fix from $1,600 2020-03-23
Parallels HIGH 7.5
CVE-2020-7213

Parallels 13 uses cleartext HTTP as part of the update process, allowing man-in-the-middle attacks. Users of out-of-date versions are presented with …

No fix yet
Fix from $1,950 2020-01-21
Parallels Desktop HIGH 7.8
CVE-2019-17148

This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop Parallels Desktop version 14.1.3 (454…

Mitigation only
Fix from $1,950 2020-01-07
Parallels Plesk Panel MEDIUM 6.1
CVE-2019-18793

Parallels Plesk Panel 9.5 allows XSS in target/locales/tr-TR/help/index.htm? via the "fileName" parameter.

No fix yet
Fix from $1,600 2019-11-13
Remote Application Server HIGH 7.5
CVE-2017-9447

In the web interface of Parallels Remote Application Server (RAS) 15.5 Build 16140, a vulnerability exists due to improper validation of the file pat…

No fix yet
Fix from $1,950 2018-02-28
Parallels Plesk Panel HIGH 7.5
CVE-2013-4878EPSS 31%

The default configuration of Parallels Plesk Panel 9.0.x and 9.2.x on UNIX, and Small Business Panel 10.x on UNIX, has an improper ScriptAlias direct…

Mitigation only
Fix from $1,950 2013-07-18
Parallels Plesk Panel HIGH 7.2
CVE-2013-0133

Untrusted search path vulnerability in /usr/local/psa/admin/sbin/wrapper in Parallels Plesk Panel 11.0.9 allows local users to gain privileges via a …

Mitigation only
Fix from $1,950 2013-04-18
Parallels Plesk Panel MEDIUM 6.8
CVE-2013-0132

The suexec implementation in Parallels Plesk Panel 11.0.9 contains a cgi-wrapper whitelist entry, which allows user-assisted remote attackers to exec…

Mitigation only
Fix from $1,600 2013-04-18
H Sphere MEDIUM 6.8
CVE-2012-5004

Multiple cross-site request forgery (CSRF) vulnerabilities in Parallels H-Sphere 3.3 Patch 1 allow remote attackers to hijack the authentication of a…

No fix yet
Fix from $1,600 2012-09-19
Parallels Plesk Panel HIGH 7.5
CVE-2012-1557EPSS 6%

SQL injection vulnerability in admin/plib/api-rpc/Agent.php in Parallels Plesk Panel 7.x and 8.x before 8.6 MU#2, 9.x before 9.5 MU#11, 10.0.x before…

Mitigation only
Fix from $1,950 2012-03-12