6.9

CVE-2014-2487

Unspecified vulnerability in the Oracle VM VirtualBox component in Oracle Virtualization VirtualBox before 3.2.24, 4.0.26, 4.1.34, 4.2.26, and 4.3.14, when running on Windows, allows local users to affect confidentiality, integrity, and availability via unknown vectors related to Core, a different vulnerability than CVE-2014-4261.

Data is provided by the National Vulnerability Database (NVD)
OracleVm Virtualbox Version >= 3.2.0 < 3.2.24
   MicrosoftWindows
OracleVm Virtualbox Version >= 4.0 < 4.0.26
   MicrosoftWindows
OracleVm Virtualbox Version >= 4.1.0 < 4.1.34
   MicrosoftWindows
OracleVm Virtualbox Version >= 4.2.0 < 4.2.26
   MicrosoftWindows
OracleVm Virtualbox Version >= 4.3.0 < 4.3.14
   MicrosoftWindows
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.08% 0.21
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 6.9 3.4 10
AV:L/AC:M/Au:N/C:C/I:C/A:C