CVE-2024-21116

CVSS 3.1 Score 7.8 of 10 (high)

Details

Published Apr 16, 2024
Updated: Apr 17, 2024

Summary

CVE-2024-21116 is a vulnerability affecting Oracle VM VirtualBox, a component of Oracle Virtualization, prior to version 7.0.16. This easily exploitable issue allows a low-privileged attacker with logon access to the infrastructure where Oracle VM VirtualBox runs to compromise the product. Successfully exploited vulnerabilities can lead to a takeover of Oracle VM VirtualBox, resulting in significant confidentiality, integrity, and availability impacts. This vulnerability pertains exclusively to Linux hosts, with a base score of 7.8 on the Common Vulnerability Scoring System (CVSS).

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Oracle VM Virtualbox

Affected Vendors

  • BonqDAO