#VU22694 Input validation error in Windows and Windows Server - CVE-2019-0721
Published: November 12, 2019
Windows
Windows Server
Microsoft
Description
The vulnerability allows a remote user to execute arbitrary code on the target system.
The vulnerability exists due to insufficient validation of user-supplied input when Microsoft Hyper-V Network Switch on a host server does not properly validate input from a privileged user on a guest operating system. A remote administrator can use a speciallly crafted application and execute arbitrary code on the target system.