Oracle Vm Virtualbox vulnerabilities
417 known vulnerabilities affecting oracle/vm_virtualbox.
Total CVEs
417
CISA KEV
1
actively exploited
Public exploits
21
Exploited in wild
1
Severity breakdown
CRITICAL5HIGH195MEDIUM165LOW52
Vulnerabilities
Page 12 of 21
CVE-2020-2705MEDIUMCVSS 6.5≥ 5.2.0, < 5.2.36≥ 6.0.0, < 6.0.16+1 more2020-01-15
CVE-2020-2705 [MEDIUM] CVE-2020-2705: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppor
Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 5.2.36, prior to 6.0.16 and prior to 6.1.2. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. Whil
nvd
CVE-2020-2678MEDIUMCVSS 6.4≥ 5.2.0, < 5.2.36≥ 6.0.0, < 6.0.16+1 more2020-01-15
CVE-2020-2678 [MEDIUM] CVE-2020-2678: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppor
Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 5.2.36, prior to 6.0.16 and prior to 6.1.2. Difficult to exploit vulnerability allows low privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. Wh
nvd
CVE-2020-2725MEDIUMCVSS 6.5≥ 5.2.0, < 5.2.36≥ 6.0.0, < 6.0.16+1 more2020-01-15
CVE-2020-2725 [MEDIUM] CVE-2020-2725: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppor
Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 5.2.36, prior to 6.0.16 and prior to 6.1.2. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. Whil
nvd
CVE-2019-10219MEDIUMCVSS 6.1fixed in 6.1.322019-11-08
CVE-2019-10219 [MEDIUM] CWE-79 CVE-2019-10219: A vulnerability was found in Hibernate-Validator. The SafeHtml validator annotation fails to properl
A vulnerability was found in Hibernate-Validator. The SafeHtml validator annotation fails to properly sanitize payloads consisting of potentially malicious code in HTML comments and instructions. This vulnerability can result in an XSS attack.
nvd
CVE-2019-3017HIGHCVSS 8.2≥ 5.2.0, < 5.2.34≥ 6.0.0, < 6.0.142019-10-16
CVE-2019-3017 [HIGH] CVE-2019-3017: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppor
Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 5.2.34 and prior to 6.0.14. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerabili
nvd
CVE-2019-3028HIGHCVSS 8.8≥ 5.2.0, < 5.2.34≥ 6.0.0, < 6.0.142019-10-16
CVE-2019-3028 [HIGH] CVE-2019-3028: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppor
Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 5.2.34 and prior to 6.0.14. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerabilit
nvd
CVE-2019-2944HIGHCVSS 7.3≥ 5.2.0, < 5.2.34≥ 6.0.0, < 6.0.142019-10-16
CVE-2019-2944 [HIGH] CVE-2019-2944: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppor
Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 5.2.34 and prior to 6.0.14. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerabili
nvd
CVE-2019-2984MEDIUMCVSS 6.0≥ 5.2.0, < 5.2.34≥ 6.0.0, < 6.0.142019-10-16
CVE-2019-2984 [MEDIUM] CVE-2019-2984: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppor
Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 5.2.34 and prior to 6.0.14. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerabi
nvd
CVE-2019-3002MEDIUMCVSS 6.0≥ 5.2.0, < 5.2.34≥ 6.0.0, < 6.0.142019-10-16
CVE-2019-3002 [MEDIUM] CVE-2019-3002: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppor
Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 5.2.34 and prior to 6.0.14. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerabi
nvd
CVE-2019-3021MEDIUMCVSS 6.5≥ 5.2.0, < 5.2.34≥ 6.0.0, < 6.0.142019-10-16
CVE-2019-3021 [MEDIUM] CVE-2019-3021: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppor
Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 5.2.34 and prior to 6.0.14. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerabil
nvd
CVE-2019-3005MEDIUMCVSS 6.0≥ 5.2.0, < 5.2.34≥ 6.0.0, < 6.0.142019-10-16
CVE-2019-3005 [MEDIUM] CVE-2019-3005: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppor
Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 5.2.34 and prior to 6.0.14. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerabi
nvd
CVE-2019-3026MEDIUMCVSS 6.5≥ 5.2.0, < 5.2.34≥ 6.0.0, < 6.0.142019-10-16
CVE-2019-3026 [MEDIUM] CVE-2019-3026: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppor
Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 5.2.34 and prior to 6.0.14. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerabil
nvd
CVE-2019-3031MEDIUMCVSS 6.0≥ 5.2.0, < 5.2.34≥ 6.0.0, < 6.0.142019-10-16
CVE-2019-3031 [MEDIUM] CVE-2019-3031: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppor
Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 5.2.34 and prior to 6.0.14. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerabi
nvd
CVE-2019-2926LOWCVSS 2.3≥ 5.2.0, < 5.2.34≥ 6.0.0, < 6.0.142019-10-16
CVE-2019-2926 [LOW] CVE-2019-2926: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppor
Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 5.2.34 and prior to 6.0.14. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. Successful attacks of
nvd
CVE-2019-2859HIGHCVSS 8.8≥ 5.0.0, < 5.2.32≥ 6.0.0, < 6.0.102019-07-23
CVE-2019-2859 [HIGH] CVE-2019-2859: Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core). S
Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core). Supported versions that are affected are Prior to 5.2.32 and prior to 6.0.10. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnera
nvd
CVE-2019-2866HIGHCVSS 8.2≥ 5.0.0, < 5.2.32≥ 6.0.0, < 6.0.102019-07-23
CVE-2019-2866 [HIGH] CVE-2019-2866: Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core). S
Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core). Supported versions that are affected are Prior to 5.2.32 and prior to 6.0.10. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulner
nvd
CVE-2019-2864HIGHCVSS 7.5≥ 5.0.0, < 5.2.32≥ 6.0.0, < 6.0.102019-07-23
CVE-2019-2864 [HIGH] CVE-2019-2864: Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core). S
Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core). Supported versions that are affected are Prior to 5.2.32 and prior to 6.0.10. Difficult to exploit vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vuln
nvd
CVE-2019-2867HIGHCVSS 8.2≥ 5.0.0, < 5.2.32≥ 6.0.0, < 6.0.102019-07-23
CVE-2019-2867 [HIGH] CWE-787 CVE-2019-2867: Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core). S
Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core). Supported versions that are affected are Prior to 5.2.32 and prior to 6.0.10. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While th
nvd
CVE-2019-2865HIGHCVSS 7.5≥ 5.0.0, < 5.2.32≥ 6.0.0, < 6.0.102019-07-23
CVE-2019-2865 [HIGH] CVE-2019-2865: Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core). S
Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core). Supported versions that are affected are Prior to 5.2.32 and prior to 6.0.10. Difficult to exploit vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vuln
nvd
CVE-2019-2877MEDIUMCVSS 5.5fixed in 5.2.32≥ 6.0.0, < 6.0.102019-07-23
CVE-2019-2877 [MEDIUM] CVE-2019-2877: Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core). S
Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core). Supported versions that are affected are Prior to 5.2.32 and prior to 6.0.10. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. Successful atta
nvd