Parallels kayıtları
parallels üreticisine ait 155 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 12
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor20
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')10
- CWE-125 Out-of-bounds Read8
- CWE-129 Improper Validation of Array Index7
- CWE-367 Time-of-check Time-of-use (TOCTOU) Race Condition7
- CWE-255 Credentials Management Errors6
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
155 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
41Planlayın | CVE-2011-4749İstismar yok | The billing system for Parallels Plesk Panel 10.3.1_build1013110726.09 generates a password form field without disabling the autocomplete feparallels · parallels plesk panel · CWE-255 | Kritik10,0 | — | %2,2 | 16 Ara 2011 |
41Planlayın | CVE-2011-4739İstismar yok | The Control Panel in Parallels Plesk Panel 10.2.0 build 20110407.20 generates a password form field without disabling the autocomplete featuparallels · parallels plesk panel · CWE-255 | Kritik10,0 | — | %2,2 | 16 Ara 2011 |
41Planlayın | CVE-2011-4757İstismar yok | Parallels Plesk Small Business Panel 10.2.0 generates a password form field without disabling the autocomplete feature, which makes it easieparallels · parallels plesk small business panel · CWE-255 | Kritik10,0 | — | %2,2 | 16 Ara 2011 |
41Planlayın | CVE-2011-4730İstismar yok | The Server Administration Panel in Parallels Plesk Panel 10.2.0_build1011110331.18 generates a password form field without disabling the autparallels · parallels plesk panel · CWE-255 | Kritik10,0 | — | %2,2 | 16 Ara 2011 |
41Planlayın | CVE-2011-4768İstismar yok | The Site Editor (aka SiteBuilder) feature in Parallels Plesk Small Business Panel 10.2.0 omits the Content-Type header's charset parameter fparallels · parallels plesk small business panel | Kritik10,0 | — | %1,9 | 16 Ara 2011 |
41Planlayın | CVE-2011-4761İstismar yok | Parallels Plesk Small Business Panel 10.2.0 omits the Content-Type header's charset parameter for certain resources, which might allow remotparallels · parallels plesk small business panel | Kritik10,0 | — | %1,8 | 16 Ara 2011 |
41Planlayın | CVE-2011-4744İstismar yok | The Control Panel in Parallels Plesk Panel 10.2.0 build 20110407.20 sends incorrect Content-Type headers for certain resources, which might parallels · parallels plesk panel | Kritik10,0 | — | %1,8 | 16 Ara 2011 |
41Planlayın | CVE-2011-4762İstismar yok | Parallels Plesk Small Business Panel 10.2.0 sends incorrect Content-Type headers for certain resources, which might allow remote attackers tparallels · parallels plesk small business panel | Kritik10,0 | — | %1,8 | 16 Ara 2011 |
41Planlayın | CVE-2011-4743İstismar yok | The Control Panel in Parallels Plesk Panel 10.2.0 build 20110407.20 omits the Content-Type header's charset parameter for certain resources,parallels · parallels plesk panel | Kritik10,0 | — | %1,8 | 16 Ara 2011 |
41Planlayın | CVE-2011-4732İstismar yok | The Server Administration Panel in Parallels Plesk Panel 10.2.0_build1011110331.18 omits the Content-Type header's charset parameter for cerparallels · parallels plesk panel | Kritik10,0 | — | %1,8 | 16 Ara 2011 |
41Planlayın | CVE-2011-4733İstismar yok | The Server Administration Panel in Parallels Plesk Panel 10.2.0_build1011110331.18 sends incorrect Content-Type headers for certain resourceparallels · parallels plesk panel | Kritik10,0 | — | %1,8 | 16 Ara 2011 |
41Planlayın | CVE-2011-4755İstismar yok | Parallels Plesk Small Business Panel 10.2.0 does not properly validate string data that is intended for storage in an XML document, which alparallels · parallels plesk small business panel · CWE-20 | Kritik10,0 | — | %1,8 | 16 Ara 2011 |
41Planlayın | CVE-2011-4727İstismar yok | The Server Administration Panel in Parallels Plesk Panel 10.2.0_build1011110331.18 does not properly validate string data that is intended fparallels · parallels plesk panel · CWE-20 | Kritik10,0 | — | %1,8 | 16 Ara 2011 |
40Planlayın | CVE-2020-15860İstismar yok | Parallels Remote Application Server (RAS) 17.1.1 has a Business Logic Error causing remote code execution.parallels · remote application server | Kritik9,9 | — | %4,0 | 24 Tem 2020 |
40Planlayın | CVE-2023-45894İstismar yok | The Remote Application Server in Parallels RAS before 19.2.23975 does not segment virtualized applications from the server, which allows a rparallels · remote application server | Kritik10,0 | — | %1,2 | 14 Ara 2023 |
40Planlayın | CVE-2024-6240İstismar yok | Improper privilege management vulnerability in Parallels Desktopparallels · parallels desktop · CWE-269 | Kritik10,0 | — | %0,3 | 21 Haz 2024 |
39İzleyin | CVE-2013-4878Kavram kanıtı | The default configuration of Parallels Plesk Panel 9.0.x and 9.2.x on UNIX, and Small Business Panel 10.x on UNIX, has an improper ScriptAliparallels · parallels plesk panel · CWE-264 | Yüksek7,5 | — | %31,1 | 18 Tem 2013 |
39İzleyin | CVE-2024-34331İstismar yok | A lack of code signature verification in Parallels Desktop for Mac v19.3.0 and below allows attackers to escalate privileges via a crafted mCWE-269 | Kritik9,8 | — | %1,0 | 23 Eyl 2024 |
38İzleyin | CVE-2007-4009Kavram kanıtı | PHP remote file inclusion vulnerability in admin/business_inc/saveserver.php in SWSoft Confixx Pro 2.0.12 through 3.3.1 allows remote attackparallels · confixx · CWE-94 | Kritik9,3 | — | %4,3 | 25 Tem 2007 |
38İzleyin | CVE-2011-4851İstismar yok | The Control Panel in Parallels Plesk Panel 10.4.4_build20111103.18 generates a password form field without disabling the autocomplete featurparallels · parallels plesk panel · CWE-255 | Kritik9,3 | — | %1,9 | 16 Ara 2011 |
37İzleyin | CVE-2011-4854İstismar yok | The Control Panel in Parallels Plesk Panel 10.4.4_build20111103.18 does not ensure that Content-Type HTTP headers match the corresponding Coparallels · parallels plesk panel | Kritik9,3 | — | %1,6 | 16 Ara 2011 |
37İzleyin | CVE-2011-4856İstismar yok | The Control Panel in Parallels Plesk Panel 10.4.4_build20111103.18 sends incorrect Content-Type headers for certain resources, which might aparallels · parallels plesk panel | Kritik9,3 | — | %1,6 | 16 Ara 2011 |
37İzleyin | CVE-2011-4855İstismar yok | The Control Panel in Parallels Plesk Panel 10.4.4_build20111103.18 omits the Content-Type header's charset parameter for certain resources, parallels · parallels plesk panel | Kritik9,3 | — | %1,6 | 16 Ara 2011 |
35İzleyin | CVE-2025-31359İstismar yok | A directory traversal vulnerability exists in the PVMP package unpacking functionality of Parallels Desktop for Mac version 20.2.2 (55879).parallels · parallels desktop · CWE-22 | Yüksek8,8 | — | %1,1 | 3 Haz 2025 |
35İzleyin | CVE-2020-8875İstismar yok | This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 15.1.2-47123.parallels · parallels desktop · CWE-129 | Yüksek8,8 | — | %0,5 | 23 Mar 2020 |
- CVE-2011-474941Planlayın
The billing system for Parallels Plesk Panel 10.3.1_build1013110726.09 generates a password form field without disabling the autocomplete fe
KritikCVSS 10,0İstismar yokEPSS %2parallels · parallels plesk panel16 Ara 2011
- CVE-2011-473941Planlayın
The Control Panel in Parallels Plesk Panel 10.2.0 build 20110407.20 generates a password form field without disabling the autocomplete featu
KritikCVSS 10,0İstismar yokEPSS %2parallels · parallels plesk panel16 Ara 2011
- CVE-2011-475741Planlayın
Parallels Plesk Small Business Panel 10.2.0 generates a password form field without disabling the autocomplete feature, which makes it easie
KritikCVSS 10,0İstismar yokEPSS %2parallels · parallels plesk small business panel16 Ara 2011
- CVE-2011-473041Planlayın
The Server Administration Panel in Parallels Plesk Panel 10.2.0_build1011110331.18 generates a password form field without disabling the aut
KritikCVSS 10,0İstismar yokEPSS %2parallels · parallels plesk panel16 Ara 2011
- CVE-2011-476841Planlayın
The Site Editor (aka SiteBuilder) feature in Parallels Plesk Small Business Panel 10.2.0 omits the Content-Type header's charset parameter f
KritikCVSS 10,0İstismar yokEPSS %2parallels · parallels plesk small business panel16 Ara 2011
- CVE-2011-476141Planlayın
Parallels Plesk Small Business Panel 10.2.0 omits the Content-Type header's charset parameter for certain resources, which might allow remot
KritikCVSS 10,0İstismar yokEPSS %2parallels · parallels plesk small business panel16 Ara 2011
- CVE-2011-474441Planlayın
The Control Panel in Parallels Plesk Panel 10.2.0 build 20110407.20 sends incorrect Content-Type headers for certain resources, which might
KritikCVSS 10,0İstismar yokEPSS %2parallels · parallels plesk panel16 Ara 2011
- CVE-2011-476241Planlayın
Parallels Plesk Small Business Panel 10.2.0 sends incorrect Content-Type headers for certain resources, which might allow remote attackers t
KritikCVSS 10,0İstismar yokEPSS %2parallels · parallels plesk small business panel16 Ara 2011
- CVE-2011-474341Planlayın
The Control Panel in Parallels Plesk Panel 10.2.0 build 20110407.20 omits the Content-Type header's charset parameter for certain resources,
KritikCVSS 10,0İstismar yokEPSS %2parallels · parallels plesk panel16 Ara 2011
- CVE-2011-473241Planlayın
The Server Administration Panel in Parallels Plesk Panel 10.2.0_build1011110331.18 omits the Content-Type header's charset parameter for cer
KritikCVSS 10,0İstismar yokEPSS %2parallels · parallels plesk panel16 Ara 2011
- CVE-2011-473341Planlayın
The Server Administration Panel in Parallels Plesk Panel 10.2.0_build1011110331.18 sends incorrect Content-Type headers for certain resource
KritikCVSS 10,0İstismar yokEPSS %2parallels · parallels plesk panel16 Ara 2011
- CVE-2011-475541Planlayın
Parallels Plesk Small Business Panel 10.2.0 does not properly validate string data that is intended for storage in an XML document, which al
KritikCVSS 10,0İstismar yokEPSS %2parallels · parallels plesk small business panel16 Ara 2011
- CVE-2011-472741Planlayın
The Server Administration Panel in Parallels Plesk Panel 10.2.0_build1011110331.18 does not properly validate string data that is intended f
KritikCVSS 10,0İstismar yokEPSS %2parallels · parallels plesk panel16 Ara 2011
- CVE-2020-1586040Planlayın
Parallels Remote Application Server (RAS) 17.1.1 has a Business Logic Error causing remote code execution.
KritikCVSS 9,9İstismar yokEPSS %4parallels · remote application server24 Tem 2020
- CVE-2023-4589440Planlayın
The Remote Application Server in Parallels RAS before 19.2.23975 does not segment virtualized applications from the server, which allows a r
KritikCVSS 10,0İstismar yokEPSS %1parallels · remote application server14 Ara 2023
- CVE-2024-624040Planlayın
Improper privilege management vulnerability in Parallels Desktop
KritikCVSS 10,0İstismar yokEPSS %0parallels · parallels desktop21 Haz 2024
- CVE-2013-487839İzleyin
The default configuration of Parallels Plesk Panel 9.0.x and 9.2.x on UNIX, and Small Business Panel 10.x on UNIX, has an improper ScriptAli
YüksekCVSS 7,5Kavram kanıtıEPSS %31parallels · parallels plesk panel18 Tem 2013
- CVE-2024-3433139İzleyin
A lack of code signature verification in Parallels Desktop for Mac v19.3.0 and below allows attackers to escalate privileges via a crafted m
KritikCVSS 9,8İstismar yokEPSS %123 Eyl 2024
- CVE-2007-400938İzleyin
PHP remote file inclusion vulnerability in admin/business_inc/saveserver.php in SWSoft Confixx Pro 2.0.12 through 3.3.1 allows remote attack
KritikCVSS 9,3Kavram kanıtıEPSS %4parallels · confixx25 Tem 2007
- CVE-2011-485138İzleyin
The Control Panel in Parallels Plesk Panel 10.4.4_build20111103.18 generates a password form field without disabling the autocomplete featur
KritikCVSS 9,3İstismar yokEPSS %2parallels · parallels plesk panel16 Ara 2011
- CVE-2011-485437İzleyin
The Control Panel in Parallels Plesk Panel 10.4.4_build20111103.18 does not ensure that Content-Type HTTP headers match the corresponding Co
KritikCVSS 9,3İstismar yokEPSS %2parallels · parallels plesk panel16 Ara 2011
- CVE-2011-485637İzleyin
The Control Panel in Parallels Plesk Panel 10.4.4_build20111103.18 sends incorrect Content-Type headers for certain resources, which might a
KritikCVSS 9,3İstismar yokEPSS %2parallels · parallels plesk panel16 Ara 2011
- CVE-2011-485537İzleyin
The Control Panel in Parallels Plesk Panel 10.4.4_build20111103.18 omits the Content-Type header's charset parameter for certain resources,
KritikCVSS 9,3İstismar yokEPSS %2parallels · parallels plesk panel16 Ara 2011
- CVE-2025-3135935İzleyin
A directory traversal vulnerability exists in the PVMP package unpacking functionality of Parallels Desktop for Mac version 20.2.2 (55879).
YüksekCVSS 8,8İstismar yokEPSS %1parallels · parallels desktop3 Haz 2025
- CVE-2020-887535İzleyin
This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 15.1.2-47123.
YüksekCVSS 8,8İstismar yokEPSS %1parallels · parallels desktop23 Mar 2020