Vulnerability in Oracle VM VirtualBox by Oracle Virtualization
CVE-2025-53026

6MEDIUM

Key Information:

Vendor

Oracle

Vendor
CVE Published:
15 July 2025

What is CVE-2025-53026?

A security vulnerability exists in Oracle VM VirtualBox, primarily affecting version 7.1.10. This flaw allows an adversary with high-level privileges and logon access to the hypervisor environment to exploit the vulnerability, leading to unauthorized access to sensitive data stored within the Oracle VM VirtualBox ecosystem. Although the flaw is isolated to this virtualization product, exploitation can have far-reaching effects, potentially placing additional connected systems and data at risk.

Affected Version(s)

Oracle VM VirtualBox 7.1.10

References

CVSS V3.1

Score:
6
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-53026 : Vulnerability in Oracle VM VirtualBox by Oracle Virtualization