Vulnerability Details CVE-2023-45894
The Remote Application Server in Parallels RAS before 19.2.23975 does not segment virtualized applications from the server, which allows a remote attacker to achieve remote code execution via standard kiosk breakout techniques.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.035
EPSS Ranking 86.9%
CVSS Severity
CVSS v3 Score 10.0
Products affected by CVE-2023-45894
-
cpe:2.3:a:parallels:remote_application_server:-
-
cpe:2.3:a:parallels:remote_application_server:15.5
-
cpe:2.3:a:parallels:remote_application_server:17.0
-
cpe:2.3:a:parallels:remote_application_server:17.1
-
cpe:2.3:a:parallels:remote_application_server:17.1.1
-
cpe:2.3:a:parallels:remote_application_server:18.0