Improper input validation in Microsoft Windows and Windows Server - CVE-2018-8489
Published: October 9, 2018
Vulnerability details
The vulnerability allows an adjacent attacker to compromise vulnerable host operating system.
The vulnerability exists in Windows Hyper-V on a host server due to improper validation of input from an authenticated user on a guest operating system. A remote attacker with access to guest operating system can run a specially crafted application and compromise the host system.
Affected software
Windows Server