6.9

CVE-2014-2487

Unspecified vulnerability in the Oracle VM VirtualBox component in Oracle Virtualization VirtualBox before 3.2.24, 4.0.26, 4.1.34, 4.2.26, and 4.3.14, when running on Windows, allows local users to affect confidentiality, integrity, and availability via unknown vectors related to Core, a different vulnerability than CVE-2014-4261.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
OracleVm Virtualbox Version >= 3.2.0 < 3.2.24
   MicrosoftWindows
OracleVm Virtualbox Version >= 4.0 < 4.0.26
   MicrosoftWindows
OracleVm Virtualbox Version >= 4.1.0 < 4.1.34
   MicrosoftWindows
OracleVm Virtualbox Version >= 4.2.0 < 4.2.26
   MicrosoftWindows
OracleVm Virtualbox Version >= 4.3.0 < 4.3.14
   MicrosoftWindows
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.08% 0.21
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 6.9 3.4 10
AV:L/AC:M/Au:N/C:C/I:C/A:C