Local Privilege Escalation in Parallels Desktop from Parallels
CVE-2021-34864
What is CVE-2021-34864?
This vulnerability allows local attackers to escalate their privileges on systems running the affected version of Parallels Desktop. The flaw is located in the WinAppHelper component, where insufficient access control is present. To exploit this issue, an attacker needs to have the ability to execute low-privileged code on the target guest system. By leveraging this vulnerability, the attacker can escalate privileges and execute arbitrary code within the hypervisor's context, potentially compromising the security of the system.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Desktop 16.1.3 (49160)
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved
