ZDI-CAN-26516: ZDI-25-1015: Parallels Toolbox CleanDrive Link Following Local Privilege Escalation Vulnerability
This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Toolbox. An attacker must first obtain the ability to execute low-privileged code on the target host system in order to exploit this vulnerability. Additional user interaction is required in that an administrator must begin a cleanup of temporary files on the system. The ZDI has assigned a CVSS rating of 7.3. The following CVEs are assigned: CVE-2025-66288.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-CAN-26516?
The severity of ZDI-CAN-26516 is classified as a privilege escalation vulnerability.
How do I fix ZDI-CAN-26516?
To fix ZDI-CAN-26516, update the Parallels Toolbox to the latest version provided by the vendor.
Who is affected by ZDI-CAN-26516?
Users of Parallels Toolbox are affected by ZDI-CAN-26516 if they have not applied the necessary updates.
What type of attack does ZDI-CAN-26516 allow?
ZDI-CAN-26516 allows local attackers to escalate privileges on the affected installations.
Does ZDI-CAN-26516 require user interaction to exploit?
Yes, exploiting ZDI-CAN-26516 requires additional user interaction after obtaining low-privileged access.