High severity7.5NVD Advisory· Published Jan 21, 2020· Updated Jun 17, 2026
CVE-2020-7213
CVE-2020-7213
Description
Parallels 13 uses cleartext HTTP as part of the update process, allowing man-in-the-middle attacks. Users of out-of-date versions are presented with a pop-up window for a parallels_updates.xml file on the http://update.parallels.com web site.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- Parallels/Parallelsdescription
Patches
Vulnerability mechanics
References
3- almorabea.net/en/2020/01/19/write-up-for-the-parallel-vulnerability-cve-2020-7213/nvdExploitThird Party Advisory
- almorabea.net/cves/cve-2020-7213.txtnvdThird Party Advisory
- parallels.comnvdProductVendor Advisory
News mentions
0No linked articles in our index yet.