VYPR
High severity8.4NVD Advisory· Published Oct 10, 2018· Updated Jun 17, 2026

CVE-2018-8490

CVE-2018-8490

Description

A remote code execution vulnerability exists when Windows Hyper-V on a host server fails to properly validate input from an authenticated user on a guest operating system, aka "Windows Hyper-V Remote Code Execution Vulnerability." This affects Windows Server 2016, Windows 10, Windows Server 2019, Windows 10 Servers. This CVE ID is unique from CVE-2018-8489.

Affected products

15
  • Range: version 1709 (Server Core Installation)
  • Microsoft/Windows Server 2016cpe-rescue4 versions
    (Server Core installation)+ 3 more
    • (no CPE)range: (Server Core installation)
    • cpe:2.3:o:microsoft:windows_server_2016:-:*:*:*:*:*:*:*
    • cpe:2.3:o:microsoft:windows_server_2016:1709:*:*:*:*:*:*:*
    • cpe:2.3:o:microsoft:windows_server_2016:1803:*:*:*:*:*:*:*
  • Microsoft/Windows Server 2019cpe-rescue2 versions
    (Server Core installation)+ 1 more
    • (no CPE)range: (Server Core installation)
    • cpe:2.3:o:microsoft:windows_server_2019:-:*:*:*:*:*:*:*
  • Microsoft/Windows 10 1909cpe-rescue7 versions
    Version 1607 for x64-based Systems+ 6 more
    • (no CPE)range: Version 1607 for x64-based Systems
    • cpe:2.3:o:microsoft:windows_10:1703:*:*:*:*:*:x64:*
    • cpe:2.3:o:microsoft:windows_10:1709:*:*:*:*:*:x64:*
    • cpe:2.3:o:microsoft:windows_10:1803:*:*:*:*:*:x64:*
    • cpe:2.3:o:microsoft:windows_10:1809:*:*:*:*:*:x64:*
    • cpe:2.3:o:microsoft:windows_10:-:*:*:*:*:*:x64:*
    • cpe:2.3:o:microsoft:windows_10:1607:*:*:*:*:*:x86:*

Patches

Vulnerability mechanics

References

3

News mentions

0

No linked articles in our index yet.