ZeroHour

CVE-2020-8968

CVSS 3.1
7.1 high
EPSS
<1%p19
Published
()
Modified
Description

Parallels Remote Application Server (RAS) allows a local attacker to retrieve certain profile password in clear text format by uploading a previously stored cyphered file by Parallels RAS. The confidentiality, availability and integrity of the information of the user could be compromised if an attacker is able to recover the profile password.

Vendors
parallels
Products
remote application server
Weakness
CWE-255
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N

In the news

No ingested article mentions this CVE yet.