Local Privilege Escalation Vulnerability in Parallels RAS Client by Parallels
CVE-2026-13121
7.8HIGH
What is CVE-2026-13121?
A local privilege escalation vulnerability exists in the RAS RDP Backend Service of Parallels RAS Client. This flaw arises from an exposed dangerous function which allows an attacker with limited privileges to escalate their access and execute arbitrary code in the context of the SYSTEM user. Successful exploitation requires that the attacker initially has the capability to run low-privileged code on the system.
Affected Version(s)
RAS Client 21.0.26296
