Oracle VM VirtualBox Core Component Privilege Escalation Vulnerability

Vulnerability

A vulnerability has been identified in the Oracle VM VirtualBox product, specifically in the Core component, version 7.1.10. This easily exploitable vulnerability allows a high-privileged attacker with access to the infrastructure where Oracle VM VirtualBox is running to compromise the application. Although the vulnerability resides within Oracle VM VirtualBox, successful exploitation could significantly impact other products, leading to a scope change. The vulnerability allows for the takeover of Oracle VM VirtualBox, with a CVSS 3.1 Base Score of 8.2, indicating impacts on confidentiality, integrity, and availability.

Impact

Exploitation of this vulnerability can lead to a complete takeover of Oracle VM VirtualBox, allowing the attacker to gain control over the application and potentially disrupt its functionality or manipulate its operations.

Added: Jul 15, 2025, 8:49 PM
Updated: Jul 15, 2025, 8:49 PM

Vulnerability Rating

Custom Algorithm
spread
7.8
impact
0.0
exploitability
2.8
remediation
0.0
relevance
0.3
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.