oculus CVE Vulnerabilities & CVE List (3)

Products (CPE): — CVEs: 3

oculus vulnerability overview

Aggregates CVE and security vulnerability intelligence across all oculus-related products, including CVSS, EPSS, publication dates, and vulnerability intelligence data.

Historical issues mainly involve vendor risk cross-site scripting and vendor risk path handling and related problems; some flaws may lead to vendor impact file overwrite, affecting vendor surface software deployment scenarios.

Vulnerability distribution trend (last 24 months)

Showing 13 of 3 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2021-24038 Due to a bug with management of handles in OVRServiceLauncher.exe, an attacker could expose a privileged process handle to an unprivileged process, leading to local privilege escalation. This issue affects Oculus Desktop versions after 1.39 and prior to 31.1.0.67.507. [email protected] 7.8 0.20% 2021-08-19 2026-06-17
CVE-2020-1885 Writing to an unprivileged file from a privileged OVRRedir.exe process in Oculus Desktop before 1.44.0.32849 on Windows allows local users to write to arbitrary files and consequently gain privileges via vectors involving a hard link to a log file. [email protected] 7.8 0.40% 2020-04-08 2026-06-17
CVE-2019-3562 A remote web page could inject arbitrary HTML code into the Oculus Browser UI, allowing an attacker to spoof UI and potentially execute code. This affects the Oculus Browser starting from version 5.2.7 until 5.7.11. [email protected] 6.1 1.10% 2019-04-29 2026-06-17
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence