CVE-2016-0088Improper Access Control in Microsoft Windows Server 2012

Severity
9.3CRITICALNVD
EPSS
1.5%
top 18.60%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedApr 12
Latest updateMay 14

Description

Hyper-V in Microsoft Windows 8.1, Windows Server 2012 Gold and R2, and Windows 10 allows guest OS users to execute arbitrary code on the host OS via a crafted application, aka "Hyper-V Remote Code Execution Vulnerability."

CVSS vector

CVSS:3.0/AV:L/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:HExploitability: 2.5 | Impact: 6.0

🔴Vulnerability Details

1
GHSA
GHSA-4h7p-4c7p-j56v: Hyper-V in Microsoft Windows 82022-05-14

💥Exploits & PoCs

1
Exploit-DB
Apple Intel HD 3000 Graphics Driver 10.0.0 - Local Privilege Escalation2016-04-08

📋Vendor Advisories

1
Microsoft
Windows Hyper-V Remote Code Execution Vulnerability2016-04-12

🕵️Threat Intelligence

4
Talos
Microsoft Patch Tuesday - April 20162016-04-12
Talos
Microsoft Patch Tuesday - April 20162016-04-12
Talos
Vulnerability Spotlight: Apple OS X Graphics Kernel Driver Local Privilege Escalation Vulnerability2016-03-22
Talos
Vulnerability Spotlight: Apple OS X Graphics Kernel Driver Local Privilege Escalation Vulnerability2016-03-22