Oracle Vm Virtualbox vulnerabilities

408 known vulnerabilities affecting oracle/vm_virtualbox.

Total CVEs
408
CISA KEV
1
actively exploited
Public exploits
21
Exploited in wild
1
Severity breakdown
CRITICAL5HIGH190MEDIUM163LOW50

Vulnerabilities

Page 10 of 21
CVE-2020-2758HIGHCVSS 8.2fixed in 5.2.40≥ 6.0.0, < 6.0.20+1 more2020-04-15
CVE-2020-2758 [HIGH] CWE-416 CVE-2020-2758: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppor Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 5.2.40, prior to 6.0.20 and prior to 6.1.6. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBo
nvd
CVE-2020-2914HIGHCVSS 7.0fixed in 6.0.20≥ 6.1.0, < 6.1.62020-04-15
CVE-2020-2914 [HIGH] CVE-2020-2914: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppor Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 6.0.20 and prior to 6.1.6. Difficult to exploit vulnerability allows low privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. Successful attacks of
nvd
CVE-2020-2908HIGHCVSS 8.2fixed in 5.2.40≥ 6.0.0, < 6.0.20+1 more2020-04-15
CVE-2020-2908 [HIGH] CWE-20 CVE-2020-2908: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppor Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 5.2.40, prior to 6.0.20 and prior to 6.1.6. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox
nvd
CVE-2020-2907HIGHCVSS 7.5fixed in 5.2.40≥ 6.0.0, < 6.0.20+1 more2020-04-15
CVE-2020-2907 [HIGH] CWE-20 CVE-2020-2907: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppor Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 5.2.40, prior to 6.0.20 and prior to 6.1.6. Difficult to exploit vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualB
nvd
CVE-2020-2929HIGHCVSS 7.8fixed in 5.2.40≥ 6.0.0, < 6.0.20+1 more2020-04-15
CVE-2020-2929 [HIGH] CVE-2020-2929: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppor Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 5.2.40, prior to 6.0.20 and prior to 6.1.6. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. Succes
nvd
CVE-2020-2911HIGHCVSS 7.5fixed in 5.2.40≥ 6.0.0, < 6.0.20+1 more2020-04-15
CVE-2020-2911 [HIGH] CVE-2020-2911: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppor Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 5.2.40, prior to 6.0.20 and prior to 6.1.6. Difficult to exploit vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. Whi
nvd
CVE-2020-2905HIGHCVSS 8.2fixed in 5.2.40≥ 6.0.0, < 6.0.20+1 more2020-04-15
CVE-2020-2905 [HIGH] CVE-2020-2905: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppor Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 5.2.40, prior to 6.0.20 and prior to 6.1.6. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While
nvd
CVE-2020-2958HIGHCVSS 7.5fixed in 5.2.40≥ 6.0.0, < 6.0.20+1 more2020-04-15
CVE-2020-2958 [HIGH] CVE-2020-2958: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppor Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 5.2.40, prior to 6.0.20 and prior to 6.1.6. Difficult to exploit vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. Whi
nvd
CVE-2020-2959HIGHCVSS 8.6fixed in 5.2.40≥ 6.0.0, < 6.0.20+1 more2020-04-15
CVE-2020-2959 [HIGH] CVE-2020-2959: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppor Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 5.2.40, prior to 6.0.20 and prior to 6.1.6. Easily exploitable vulnerability allows unauthenticated attacker with network access via MLD to compromise Oracle VM VirtualBox. While the vulnerability is in Oracle VM Virtua
nvd
CVE-2020-2951MEDIUMCVSS 6.5fixed in 5.2.40≥ 6.0.0, < 6.0.20+1 more2020-04-15
CVE-2020-2951 [MEDIUM] CVE-2020-2951: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppor Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 5.2.40, prior to 6.0.20 and prior to 6.1.6. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. Whil
nvd
CVE-2020-2743MEDIUMCVSS 6.0fixed in 5.2.36≥ 6.0.0, < 6.0.16+1 more2020-04-15
CVE-2020-2743 [MEDIUM] CWE-125 CVE-2020-2743: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppor Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 5.2.36, prior to 6.0.16 and prior to 6.1.2. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM Virtual
nvd
CVE-2020-2910MEDIUMCVSS 6.5fixed in 6.0.20≥ 6.1.0, < 6.1.62020-04-15
CVE-2020-2910 [MEDIUM] CVE-2020-2910: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppor Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 6.0.20 and prior to 6.1.6. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerabili
nvd
CVE-2020-2894MEDIUMCVSS 6.0fixed in 5.2.40≥ 6.0.0, < 6.0.20+1 more2020-04-15
CVE-2020-2894 [MEDIUM] CVE-2020-2894: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppor Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 5.2.40, prior to 6.0.20 and prior to 6.1.6. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. Whi
nvd
CVE-2020-2741MEDIUMCVSS 6.0fixed in 5.2.40≥ 6.0.0, < 6.0.20+1 more2020-04-15
CVE-2020-2741 [MEDIUM] CWE-125 CVE-2020-2741: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppor Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 5.2.40, prior to 6.0.20 and prior to 6.1.6. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM Virtual
nvd
CVE-2020-2748LOWCVSS 3.2fixed in 5.2.40≥ 6.0.0, < 6.0.20+1 more2020-04-15
CVE-2020-2748 [LOW] CWE-125 CVE-2020-2748: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppor Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 5.2.40, prior to 6.0.20 and prior to 6.1.6. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox
nvd
CVE-2020-2909LOWCVSS 2.8fixed in 5.2.40≥ 6.0.0, < 6.0.20+1 more2020-04-15
CVE-2020-2909 [LOW] CVE-2020-2909: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppor Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 5.2.40, prior to 6.0.20 and prior to 6.1.6. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. Success
nvd
CVE-2020-2701HIGHCVSS 7.5≥ 5.2.0, < 5.2.36≥ 6.0.0, < 6.0.16+1 more2020-01-15
CVE-2020-2701 [HIGH] CWE-787 CVE-2020-2701: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppor Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 5.2.36, prior to 6.0.16 and prior to 6.1.2. Difficult to exploit vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM Virtual
nvd
CVE-2020-2682HIGHCVSS 8.2≥ 5.2.0, < 5.2.36≥ 6.0.0, < 6.0.16+1 more2020-01-15
CVE-2020-2682 [HIGH] CVE-2020-2682: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppor Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 5.2.36, prior to 6.0.16 and prior to 6.1.2. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While
nvd
CVE-2020-2698HIGHCVSS 7.5≥ 5.2.0, < 5.2.36≥ 6.0.0, < 6.0.16+1 more2020-01-15
CVE-2020-2698 [HIGH] CVE-2020-2698: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppor Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 5.2.36, prior to 6.0.16 and prior to 6.1.2. Difficult to exploit vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. Whi
nvd
CVE-2020-2702HIGHCVSS 7.5≥ 5.2.0, < 5.2.36≥ 6.0.0, < 6.0.16+1 more2020-01-15
CVE-2020-2702 [HIGH] CVE-2020-2702: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppor Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 5.2.36, prior to 6.0.16 and prior to 6.1.2. Difficult to exploit vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. Whi
nvd