Oracle VM VirtualBox Core Component Takeover Vulnerability

Vulnerability

A vulnerability has been identified in Oracle VM VirtualBox versions 7.1.14 and 7.2.4, allowing an unauthenticated attacker with access to the physical communication segment connected to the hardware running Oracle VM VirtualBox to compromise the application. Exploitation of this vulnerability can lead to a complete takeover of Oracle VM VirtualBox.

Impact

Exploitation of this vulnerability can result in a full takeover of the Oracle VM VirtualBox application.

Added: Jan 20, 2026, 10:28 PM
Updated: Jan 20, 2026, 10:28 PM

Vulnerability Rating

Custom Algorithm
spread
7.8
impact
10.0
exploitability
3.7
remediation
0.0
relevance
2.1
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.