Oracle Vm Virtualbox vulnerabilities

408 known vulnerabilities affecting oracle/vm_virtualbox.

Total CVEs
408
CISA KEV
1
actively exploited
Public exploits
21
Exploited in wild
1
Severity breakdown
CRITICAL5HIGH190MEDIUM163LOW50

Vulnerabilities

Page 4 of 21
CVE-2023-22016MEDIUMCVSS 4.2≥ 6.0.0, < 6.1.46≥ 7.0.0, < 7.0.102023-07-18
CVE-2023-22016 [MEDIUM] CVE-2023-22016: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppo Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 6.1.46 and Prior to 7.0.10. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. Successful attack
nvd
CVE-2023-22017MEDIUMCVSS 5.5≥ 6.0.0, < 6.1.46≥ 7.0.0, < 7.0.102023-07-18
CVE-2023-22017 [MEDIUM] CVE-2023-22017: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppo Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 6.1.46 and Prior to 7.0.10. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. Successful attacks
nvd
CVE-2023-21987HIGHCVSS 7.8fixed in 6.1.44≥ 7.0.0, < 7.0.82023-04-18
CVE-2023-21987 [HIGH] CWE-269 CVE-2023-21987: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppo Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 6.1.44 and Prior to 7.0.8. Difficult to exploit vulnerability allows low privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the v
nvd
CVE-2023-21990HIGHCVSS 8.2fixed in 6.1.44≥ 7.0.0, < 7.0.82023-04-18
CVE-2023-21990 [HIGH] CWE-269 CVE-2023-21990: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppo Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 6.1.44 and Prior to 7.0.8. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vu
nvd
CVE-2023-21989MEDIUMCVSS 6.0fixed in 6.1.44≥ 7.0.0, < 7.0.82023-04-18
CVE-2023-21989 [MEDIUM] CVE-2023-21989: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppo Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 6.1.44 and Prior to 7.0.8. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerab
nvd
CVE-2023-22001MEDIUMCVSS 4.6fixed in 6.1.44≥ 7.0.0, < 7.0.82023-04-18
CVE-2023-22001 [MEDIUM] CVE-2023-22001: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppo Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 6.1.44 and Prior to 7.0.8. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerab
nvd
CVE-2023-22002MEDIUMCVSS 6.0fixed in 6.1.44≥ 7.0.0, < 7.0.82023-04-18
CVE-2023-22002 [MEDIUM] CVE-2023-22002: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppo Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 6.1.44 and Prior to 7.0.8. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerab
nvd
CVE-2023-21998MEDIUMCVSS 4.6fixed in 6.1.44≥ 7.0.0, < 7.0.82023-04-18
CVE-2023-21998 [MEDIUM] CVE-2023-21998: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppo Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 6.1.44 and Prior to 7.0.8. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerab
nvd
CVE-2023-22000MEDIUMCVSS 4.6fixed in 6.1.44≥ 7.0.0, < 7.0.82023-04-18
CVE-2023-22000 [MEDIUM] CVE-2023-22000: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppo Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 6.1.44 and Prior to 7.0.8. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerab
nvd
CVE-2023-21991LOWCVSS 3.2fixed in 6.1.44≥ 7.0.0, < 7.0.82023-04-18
CVE-2023-21991 [LOW] CVE-2023-21991: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppo Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 6.1.44 and Prior to 7.0.8. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerabili
nvd
CVE-2023-21999LOWCVSS 3.6fixed in 6.1.44≥ 7.0.0, < 7.0.82023-04-18
CVE-2023-21999 [LOW] CVE-2023-21999: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppo Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 6.1.44 and Prior to 7.0.8. Difficult to exploit vulnerability allows low privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. Successful attacks o
nvd
CVE-2023-21988LOWCVSS 3.8fixed in 6.1.44≥ 7.0.0, < 7.0.82023-04-18
CVE-2023-21988 [LOW] CVE-2023-21988: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppo Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 6.1.44 and Prior to 7.0.8. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerabilit
nvd
CVE-2023-21886HIGHCVSS 8.1fixed in 6.1.42≥ 7.0.0, < 7.0.62023-01-18
CVE-2023-21886 [HIGH] CWE-94 CVE-2023-21886: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppo Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 6.1.42 and prior to 7.0.6. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle VM VirtualBox. Successful attacks of this vulnerabil
nvd
CVE-2023-21898MEDIUMCVSS 5.5fixed in 6.1.42≥ 7.0.0, < 7.0.62023-01-18
CVE-2023-21898 [MEDIUM] CVE-2023-21898: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppo Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 6.1.42 and prior to 7.0.6. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. Successful attacks
nvd
CVE-2023-21899MEDIUMCVSS 5.5fixed in 6.1.42≥ 7.0.0, < 7.0.62023-01-18
CVE-2023-21899 [MEDIUM] CVE-2023-21899: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppo Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 6.1.42 and prior to 7.0.6. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. Successful attacks
nvd
CVE-2023-21884MEDIUMCVSS 4.4fixed in 6.1.42≥ 7.0.0, < 7.0.62023-01-18
CVE-2023-21884 [MEDIUM] CVE-2023-21884: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppo Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 6.1.42 and prior to 7.0.6. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. Successful attacks
nvd
CVE-2023-21889LOWCVSS 3.8fixed in 6.1.42≥ 7.0.0, < 7.0.62023-01-18
CVE-2023-21889 [LOW] CVE-2023-21889: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppo Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 6.1.42 and prior to 7.0.6. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerabilit
nvd
CVE-2023-21885LOWCVSS 3.8fixed in 6.1.42≥ 7.0.0, < 7.0.62023-01-18
CVE-2023-21885 [LOW] CVE-2023-21885: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppo Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 6.1.42 and prior to 7.0.6. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerabilit
nvd
CVE-2022-21620HIGHCVSS 7.5fixed in 6.1.402022-10-18
CVE-2022-21620 [HIGH] CVE-2022-21620: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppor Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 6.1.40. Difficult to exploit vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is in Oracle
nvd
CVE-2022-39425HIGHCVSS 8.1fixed in 6.1.402022-10-18
CVE-2022-39425 [HIGH] CWE-306 CVE-2022-39425: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppor Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 6.1.40. Difficult to exploit vulnerability allows unauthenticated attacker with network access via VRDP to compromise Oracle VM VirtualBox. Successful attacks of this vulnerability can result in takeover of Or
nvd