Vulnerabilidades em Parallels

80 resultados
Análise Vexday

Com 80 CVEs catalogadas e nenhuma em exploração ativa confirmada pelo CISA KEV, o perfil de risco imediato do Parallels situa-se abaixo da média geral do catálogo, sem registros de severidade crítica, PoCs públicas disponíveis ou novas vulnerabilidades nos últimos 90 dias. O tipo de falha mais recorrente é CWE-125 (leitura fora dos limites de buffer), padrão que, embora não represente risco imediato elevado, costuma servir de base para cadeias de exploração mais complexas quando combinado com outras vulnerabilidades. A CVE de maior atenção no momento é CVE-2025-31359, com escore EPSS de 0,0168, indicando probabilidade de exploração ainda baixa no curto prazo. Equipes de segurança podem manter monitoramento de rotina, priorizando o controle de CVEs relacionadas a leituras de memória fora dos limites e acompanhando eventuais evoluções no EPSS de CVE-2025-31359.

CVE-2025-31359HIGHA directory traversal vulnerability exists in the PVMP package unpacking functionality of Parallels Desktop for Mac version 20.2.2 (55879). EPSS 1.7%CVE-2023-27326HIGHParallels Desktop Toolgate Directory Traversal Local Privilege Escalation VulnerabilityEPSS 1.3%CVE-2023-50227HIGHParallels Desktop virtio-gpu Out-Of-Bounds Write Remote Code Execution VulnerabilityEPSS 0.8%CVE-2023-50226HIGHParallels Desktop Updater Link Following Local Privilege Escalation VulnerabilityEPSS 0.7%CVE-2020-8871HIGHThis vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 15.1.0-47107 . An attacker mEPSS 0.6%CVE-2020-17401MEDIUMThis vulnerability allows local attackers to disclose sensitive informations on affected installations of Parallels Desktop 15.1.4. An attacEPSS 0.6%CVE-2020-17394MEDIUMThis vulnerability allows local attackers to disclose sensitive information on affected installations of Parallels Desktop 15.1.4. An attackEPSS 0.6%CVE-2020-8875HIGHThis vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 15.1.2-47123. An attacker muEPSS 0.5%CVE-2021-27278HIGHThis vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 16.1.1-49141. An attacker muEPSS 0.5%CVE-2020-17399HIGHThis vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 15.1.4. An attacker must firEPSS 0.5%CVE-2020-17392HIGHThis vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 15.1.3-47255. An attacker muEPSS 0.5%CVE-2020-17400HIGHThis vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 15.1.4. An attacker must firEPSS 0.5%CVE-2020-17396HIGHThis vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 15.1.4. An attacker must firEPSS 0.5%CVE-2020-17390LOWThis vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 15.1.2-47123. An attacker muEPSS 0.5%CVE-2020-17393MEDIUMThis vulnerability allows local attackers to disclose information on affected installations of Parallels Desktop 15.1.3-47255. An attacker mEPSS 0.5%CVE-2020-17398MEDIUMThis vulnerability allows local attackers to disclose information on affected installations of Parallels Desktop 15.1.4. An attacker must fiEPSS 0.5%CVE-2020-17391MEDIUMThis vulnerability allows local attackers to disclose information on affected installations of Parallels Desktop 15.1.3-47255. An attacker mEPSS 0.5%CVE-2020-8872MEDIUMThis vulnerability allows local attackers to disclose sensitive information on affected installations of Parallels Desktop 15.1.1-47117. An EPSS 0.5%CVE-2020-8876MEDIUMThis vulnerability allows local attackers to disclose information on affected installations of Parallels Desktop 15.1.2-47123. An attacker mEPSS 0.5%CVE-2019-17148HIGHThis vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop Parallels Desktop version 14EPSS 0.5%