CVE-2021-31428 – Parallels Desktop IDE Heap-based Buffer Overflow Privilege Escalation Vulnerability
https://notcve.org/view.php?id=CVE-2021-31428
21 Apr 2021 — This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 15.1.5-47309. ... An attacker can leverage this vulnerability to escalate privileges and execute arbitrary code in the context of the hypervisor. An attacker can leverage this vulnerability to escalate privileges and execute arbitrary code in the context of the hypervisor. ... Fue ZDI-CAN-13186 This vulnerability allows local attackers to escalate privileges on af... • https://kb.parallels.com/en/125013 • CWE-122: Heap-based Buffer Overflow •
CVE-2021-31430 – Parallels Desktop IDE Out-Of-Bounds Read Information Disclosure Vulnerability
https://notcve.org/view.php?id=CVE-2021-31430
21 Apr 2021 — An attacker can leverage this in conjunction with other vulnerabilities to escalate privileges and execute arbitrary code in the context of the hypervisor. ... An attacker can leverage this in conjunction with other vulnerabilities to escalate privileges and execute arbitrary code in the context of the hypervisor. • https://kb.parallels.com/en/125013 • CWE-125: Out-of-bounds Read •
CVE-2021-31420 – Parallels Desktop Toolgate Stack-based Buffer Overflow Privilege Escalation Vulnerability
https://notcve.org/view.php?id=CVE-2021-31420
21 Apr 2021 — This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 16.1.0-48950. ... An attacker can leverage this vulnerability to escalate privileges and execute arbitrary code in the context of the hypervisor. An attacker can leverage this vulnerability to escalate privileges and execute arbitrary code in the context of the hypervisor. ... Fue ZDI-CAN-12220 This vulnerability allows local attackers to escalate privileges on af... • https://kb.parallels.com/en/125013 • CWE-121: Stack-based Buffer Overflow •
CVE-2021-31424 – Parallels Desktop OTG Heap-based Buffer Overflow Privilege Escalation Vulnerability
https://notcve.org/view.php?id=CVE-2021-31424
21 Apr 2021 — This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 15.1.5-47309. ... An attacker can leverage this vulnerability to escalate privileges and execute arbitrary code in the context of the hypervisor. An attacker can leverage this vulnerability to escalate privileges and execute arbitrary code in the context of the hypervisor. ... Fue ZDI-CAN-12848 This vulnerability allows local attackers to escalate privileges on af... • https://kb.parallels.com/en/125013 • CWE-122: Heap-based Buffer Overflow •
CVE-2021-1079
https://notcve.org/view.php?id=CVE-2021-1079
20 Apr 2021 — NVIDIA GeForce Experience, all versions prior to 3.22, contains a vulnerability in GameStream plugins where log files are created using NT/System level permissions, which may lead to code execution, denial of service, or local privilege escalation. • https://nvidia.custhelp.com/app/answers/detail/a_id/5184 •
CVE-2021-20208 – Ubuntu Security Notice USN-5459-1
https://notcve.org/view.php?id=CVE-2021-20208
19 Apr 2021 — In certain environments, a local attacker could possibly use this issue to escalate privileges. • https://bugzilla.redhat.com/show_bug.cgi?id=1921116 • CWE-266: Incorrect Privilege Assignment CWE-269: Improper Privilege Management •
CVE-2021-21070 – Privilege Escalation Vulnerability in Adobe RoboHelp
https://notcve.org/view.php?id=CVE-2021-21070
19 Apr 2021 — An attacker with admin permissions to write to the file system could leverage this vulnerability to escalate privileges. • https://helpx.adobe.com/security/products/robohelp/apsb21-20.html • CWE-427: Uncontrolled Search Path Element •
CVE-2021-3492 – Ubuntu linux kernel shiftfs file system double free vulnerability
https://notcve.org/view.php?id=CVE-2021-3492
16 Apr 2021 —  También se conoce como ZDI-CAN-13562 This vulnerability allows local attackers to escalate privileges on affected installations of Canonical Ubuntu. ... An attacker can leverage this vulnerability to escalate privileges and execute code in the context of the kernel. • https://github.com/synacktiv/CVE-2021-3492 • CWE-401: Missing Release of Memory after Effective Lifetime CWE-415: Double Free •
CVE-2021-28648 – Trend Micro Antivirus for Mac Improper Access Control Privilege Escalation Vulnerability
https://notcve.org/view.php?id=CVE-2021-28648
15 Apr 2021 — Trend Micro Antivirus for Mac 2020 v10.5 and 2021 v11 (Consumer) is vulnerable to an improper access control privilege escalation vulnerability that could allow an attacker to establish a connection that could lead to full local privilege escalation within the application. ... Tome en cuenta que un atacante primero debe obtener la capacidad de ejecutar código poco privilegiado en el sistema objetivo para explotar esta vulnerabilidad This vulnerability allows local attackers to escalate privi... • https://helpcenter.trendmicro.com/en-us/article/TMKA-10293 •
CVE-2021-27278 – Parallels Desktop Toolgate Directory Traversal Privilege Escalation Vulnerability
https://notcve.org/view.php?id=CVE-2021-27278
15 Apr 2021 — This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 16.1.1-49141. ... An attacker can leverage this vulnerability to escalate privileges and execute code in the context of the current user on the host system. An attacker can leverage this vulnerability to escalate privileges and execute code in the context of the current user on the host system. ... Era ZDI-CAN-12130 This vulnerability allows local attackers to escalat... • https://kb.parallels.com/en/125013 • CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') •