Corel Parallels Desktop是加拿大Corel公司的一套适用于macOS平台的虚拟机软件。 Corel Parallels Desktop 17.1.1版本存在安全漏洞,该漏洞源于允许本地攻击者在受影响的Parallels Desktop的安装上提升权限。攻击者必须首先获得在目标系统上执行低权限代码的能力,才能利用此漏洞,具体漏洞存在于更新机制中,该产品对敏感文件设置了不正确的权限。攻击者可利用此漏洞提升权限并在root环境下执行任意代码。Was ZDI-CAN-16395。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2021-34986 | Corel Parallels Desktop 安全漏洞 | |
| CVE-2021-34987 | Corel Parallels Desktop 权限许可和访问控制问题漏洞 | |
| CVE-2022-34889 | Corel Parallels Desktop 缓冲区错误漏洞 | |
| CVE-2022-34890 | Corel Parallels Desktop 安全漏洞 |
No comments yet