Improper input validation in Windows and Windows Server - CVE-2018-8490
Published: October 9, 2018
Windows
Windows Server
Detailed vulnerability description
The vulnerability allows an adjacent attacker to compromise vulnerable host operating system.
The vulnerability exists in Windows Hyper-V on a host server due to improper validation of input from an authenticated user on a guest operating system. A remote attacker with access to guest operating system can run a specially crafted application and compromise the host system.