#VU18212 Input validation error in Windows and Windows Server - CVE-2019-0791
Published: April 10, 2019
Windows
Windows Server
Microsoft
Description
The vulnerability allows a remote attacker to execute arbitrary code on the target system
The vulnerability exists due to insufficient validation of user-supplied input within the the Microsoft XML Core Services MSXML parser. A remote attacker can create a specially crafted web page, trick the victim into visiting it and execute arbitrary code on the target system.