vulnerability
Microsoft Windows: CVE-2018-8490: Windows Hyper-V Remote Code Execution Vulnerability
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 8 | (AV:A/AC:L/Au:S/C:C/I:C/A:C) | Oct 9, 2018 | Oct 9, 2018 | Sep 5, 2025 |
Severity
8
CVSS
(AV:A/AC:L/Au:S/C:C/I:C/A:C)
Published
Oct 9, 2018
Added
Oct 9, 2018
Modified
Sep 5, 2025
Description
A remote code execution vulnerability exists when Windows Hyper-V on a host server fails to properly validate input from an authenticated user on a guest operating system, aka "Windows Hyper-V Remote Code Execution Vulnerability." This affects Windows Server 2016, Windows 10, Windows Server 2019, Windows 10 Servers. This CVE ID is unique from CVE-2018-8489.
Solutions
microsoft-windows-windows_10-1507-kb4462922microsoft-windows-windows_10-1607-kb4462917microsoft-windows-windows_10-1703-kb4462937microsoft-windows-windows_10-1709-kb4462918microsoft-windows-windows_10-1803-kb4462919microsoft-windows-windows_10-1809-kb4464330microsoft-windows-windows_server_2016-1607-kb4462917microsoft-windows-windows_server_2019-1809-kb4464330
References
- BID-105480
- CVE-2018-8490
- https://attackerkb.com/topics/CVE-2018-8490
- CWE-20
- URL-https://support.microsoft.com/help/4462917
- URL-https://support.microsoft.com/help/4462918
- URL-https://support.microsoft.com/help/4462919
- URL-https://support.microsoft.com/help/4462922
- URL-https://support.microsoft.com/help/4462937
- URL-https://support.microsoft.com/help/4464330
NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.