Parallels

    Dashboard / Vendors

    Products: 13
    Vulnerabilities: 159
    Known Exploited: 0
    21
    Critical Level Threats
    71
    High Level Threats
    65
    Medium Level Threats
    2
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2026-18263

    Parallels RAS Client RDP Backend Service Exposed Dangerous Function Local Privilege Escalation Vulnerability

    Last Modified: Aug 26, 2026
    Published: Aug 20, 2026

    CVE-2026-18262

    Parallels RAS Client RDP Backend Service Exposed Dangerous Function Local Privilege Escalation Vulnerability

    Last Modified: Aug 21, 2026
    Published: Aug 20, 2026

    CVE-2026-13121

    Parallels RAS Client RDP Backend Service Exposed Dangerous Function Local Privilege Escalation Vulnerability

    Last Modified: Aug 21, 2026
    Published: Aug 20, 2026

    CVE-2024-52561

    A privilege escalation vulnerability exists in the Snapshot functionality of Parallels Desktop for Mac version 20.1.1 (build 55740). When a snapshot of a virtual machine is deleted, a root service verifies and modifies the ownership of the snapshot files. By using a symlink, an attacker can change the ownership of files owned by root to a lower-privilege user, potentially leading to privilege escalation.

    Last Modified: Jul 02, 2025
    Published: Jun 03, 2025

    CVE-2024-54189

    A privilege escalation vulnerability exists in the Snapshot functionality of Parallels Desktop for Mac version 20.1.1 (build 55740). When a snapshot of a virtual machine is taken, a root service writes to a file owned by a normal user. By using a hard link, an attacker can write to an arbitrary file, potentially leading to privilege escalation.

    Last Modified: Jul 02, 2025
    Published: Jun 03, 2025
    Items Per Page