cbcvebase.

Oracle Vm Virtualbox vulnerabilities

417 known vulnerabilities affecting oracle/vm_virtualbox.

Total CVEs
417
CISA KEV
1
actively exploited
Public exploits
21
Exploited in wild
1
Severity breakdown
CRITICAL5HIGH195MEDIUM165LOW52

Vulnerabilities

Page 4 of 21
CVE-2024-21109MEDIUMCVSS 5.9fixed in 7.0.162024-04-16
CVE-2024-21109 [MEDIUM] CVE-2024-21109: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppo Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 7.0.16. Difficult to exploit vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle VM VirtualBox. Successful attacks of this vulnerability can result in unauthorized access
nvd
CVE-2024-21107MEDIUMCVSS 6.7fixed in 7.0.162024-04-16
CVE-2024-21107 [MEDIUM] CWE-284 CVE-2024-21107: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppo Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 7.0.16. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. Successful attacks of this vu
nvd
CVE-2024-21106MEDIUMCVSS 6.5fixed in 7.0.162024-04-16
CVE-2024-21106 [MEDIUM] CVE-2024-21106: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppo Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 7.0.16. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is in Oracle V
nvd
CVE-2024-21121MEDIUMCVSS 6.5fixed in 7.0.162024-04-16
CVE-2024-21121 [MEDIUM] CWE-269 CVE-2024-21121: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppo Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 7.0.16. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is in
nvd
CVE-2024-21108LOWCVSS 3.3fixed in 7.0.162024-04-16
CVE-2024-21108 [LOW] CVE-2024-21108: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppo Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 7.0.16. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. Successful attacks of this vulnerability
nvd
CVE-2023-22100HIGHCVSS 7.9≥ 7.0.0, < 7.0.122023-10-17
CVE-2023-22100 [HIGH] CVE-2023-22100: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppo Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 7.0.12. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is in Oracle VM
nvd
CVE-2023-22099HIGHCVSS 8.2≥ 7.0.0, < 7.0.122023-10-17
CVE-2023-22099 [HIGH] CWE-269 CVE-2023-22099: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppo Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 7.0.12. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is in O
nvd
CVE-2023-22098HIGHCVSS 8.2≥ 7.0.0, < 7.0.122023-10-17
CVE-2023-22098 [HIGH] CVE-2023-22098: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppo Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 7.0.12. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is in Oracle VM
nvd
CVE-2023-22018HIGHCVSS 8.1≥ 6.0.0, < 6.1.46≥ 7.0.0, < 7.0.102023-07-18
CVE-2023-22018 [HIGH] CVE-2023-22018: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppo Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 6.1.46 and Prior to 7.0.10. Difficult to exploit vulnerability allows unauthenticated attacker with network access via RDP to compromise Oracle VM VirtualBox. Successful attacks of this vulnerability can result in tak
nvd
CVE-2023-22016MEDIUMCVSS 4.2≥ 6.0.0, < 6.1.46≥ 7.0.0, < 7.0.102023-07-18
CVE-2023-22016 [MEDIUM] CVE-2023-22016: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppo Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 6.1.46 and Prior to 7.0.10. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. Successful attack
nvd
CVE-2023-22017MEDIUMCVSS 5.5≥ 6.0.0, < 6.1.46≥ 7.0.0, < 7.0.102023-07-18
CVE-2023-22017 [MEDIUM] CVE-2023-22017: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppo Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 6.1.46 and Prior to 7.0.10. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. Successful attacks
nvd
CVE-2023-21987HIGHCVSS 7.8fixed in 6.1.44≥ 7.0.0, < 7.0.82023-04-18
CVE-2023-21987 [HIGH] CWE-269 CVE-2023-21987: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppo Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 6.1.44 and Prior to 7.0.8. Difficult to exploit vulnerability allows low privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the v
nvd
CVE-2023-21990HIGHCVSS 8.2fixed in 6.1.44≥ 7.0.0, < 7.0.82023-04-18
CVE-2023-21990 [HIGH] CWE-269 CVE-2023-21990: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppo Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 6.1.44 and Prior to 7.0.8. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vu
nvd
CVE-2023-21989MEDIUMCVSS 6.0fixed in 6.1.44≥ 7.0.0, < 7.0.82023-04-18
CVE-2023-21989 [MEDIUM] CVE-2023-21989: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppo Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 6.1.44 and Prior to 7.0.8. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerab
nvd
CVE-2023-22001MEDIUMCVSS 4.6fixed in 6.1.44≥ 7.0.0, < 7.0.82023-04-18
CVE-2023-22001 [MEDIUM] CVE-2023-22001: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppo Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 6.1.44 and Prior to 7.0.8. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerab
nvd
CVE-2023-22002MEDIUMCVSS 6.0fixed in 6.1.44≥ 7.0.0, < 7.0.82023-04-18
CVE-2023-22002 [MEDIUM] CVE-2023-22002: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppo Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 6.1.44 and Prior to 7.0.8. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerab
nvd
CVE-2023-21998MEDIUMCVSS 4.6fixed in 6.1.44≥ 7.0.0, < 7.0.82023-04-18
CVE-2023-21998 [MEDIUM] CVE-2023-21998: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppo Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 6.1.44 and Prior to 7.0.8. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerab
nvd
CVE-2023-22000MEDIUMCVSS 4.6fixed in 6.1.44≥ 7.0.0, < 7.0.82023-04-18
CVE-2023-22000 [MEDIUM] CVE-2023-22000: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppo Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 6.1.44 and Prior to 7.0.8. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerab
nvd
CVE-2023-21991LOWCVSS 3.2fixed in 6.1.44≥ 7.0.0, < 7.0.82023-04-18
CVE-2023-21991 [LOW] CVE-2023-21991: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppo Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 6.1.44 and Prior to 7.0.8. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerabili
nvd
CVE-2023-21999LOWCVSS 3.6fixed in 6.1.44≥ 7.0.0, < 7.0.82023-04-18
CVE-2023-21999 [LOW] CVE-2023-21999: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppo Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 6.1.44 and Prior to 7.0.8. Difficult to exploit vulnerability allows low privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. Successful attacks o
nvd