Security Advisory

CVE-2020-7213

7.5
HIGH

Vulnerability Description

Parallels 13 uses cleartext HTTP as part of the update process, allowing man-in-the-middle attacks. Users of out-of-date versions are presented with a pop-up window for a parallels_updates.xml file on the http://update.parallels.com web site.
Published Date January 21, 2020
Official Source NIST NVD Advisory