8.1
CVSSv3

CVE-2022-39425

Published: 18/10/2022 Updated: 12/01/2023
CVSS v3 Base Score: 8.1 | Impact Score: 5.9 | Exploitability Score: 2.2

Vulnerability Summary

Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are before 6.1.40. Difficult to exploit vulnerability allows unauthenticated attacker with network access via VRDP to compromise Oracle VM VirtualBox. Successful attacks of this vulnerability can result in takeover of Oracle VM VirtualBox. CVSS 3.1 Base Score 8.1 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H).

Most Upvoted Vulmon Research Post

There is no Researcher post for this vulnerability
Would you like to share something about it? Sign up now to share your knowledge with the community.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

oracle vm virtualbox

Github Repositories

CVE-2022-39425 CVE-2022-39425 PoC

CVE-2022-39425 Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core) Supported versions that are affected are Prior to 6140 Difficult to exploit vulnerability allows unauthenticated attacker with network access via VRDP to compromise Oracle VM VirtualBox Successful attacks of this vulnerability can result in takeover of Oracle VM Virt

CVE-2022-3942 A vulnerability was found in SourceCodester Sanitization Management System and classified as problematic This issue affects some unknown processing of the file php-sms/?p=request_quote The manipulation leads to cross site scripting The attack may be initiated remotely The identifier VDB-213449 was assigned to this vulnerability authentication complexity ve