CVE-2024-34331
Severity CVSS v4.0:
Pending analysis
Type:
CWE-269
Improper Privilege Management
Publication date:
23/09/2024
Last modified:
26/09/2024
Description
A lack of code signature verification in Parallels Desktop for Mac v19.3.0 and below allows attackers to escalate privileges via a crafted macOS installer, because Parallels Service is setuid root.
Impact
Base Score 3.x
9.80
Severity 3.x
CRITICAL



