Improper input validation in Windows and Windows Server - CVE-2017-0162
Published: April 11, 2017 / Updated: April 12, 2017
Windows
Windows Server
Detailed vulnerability description
The vulnerability exists due to improper input validation by Windows Hyper-V Network Switch on a host server. A remote authenticated attacker can run a specially crafted application on a guest operating system and execute arbitrary code on the target system with privileges of the current user.
Successful exploitation of this vulnerability may result in compromise vulnerable system.