Back

HIGH

Parallels Remote Application Server credentials management errors

Published Dec 17, 2021

Description

Parallels Remote Application Server (RAS) allows a local attacker to retrieve certain profile password in clear text format by uploading a previously stored cyphered file by Parallels RAS. The confidentiality, availability and integrity of the information of the user could be compromised if an attacker is able to recover the profile password.

Affected products

Remediation

Vendor solution

Parallels periodically publish the fixes and note patches in their knowledge base.

Weaknesses (1)

References (1)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner INCIBE
Published Dec 17, 2021
Updated Sep 17, 2024
Reserved Feb 13, 2020
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity n/a
Public date n/a