NewsSecurity Vulnerabilities

Microsoft Windows Hyper-V code execution vulnerability [CVE-2022-21995]

CVE number = CVE-2022-21995

Microsoft Windows Hyper-V could allow a remote attacker to execute arbitrary code on the system.

By persuading a victim to open a specially-crafted content, an attacker could exploit this vulnerability to execute arbitrary code on the system.

In this case, a successful attack could be performed from a low privilege Hyper-V guest. The attacker could traverse the guest’s security boundary to execute code on the Hyper-V host execution environment.

Further information (Microsoft) – https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-21995

Luke Simmonds

Blogger at www.systemtek.co.uk

Leave a Reply

This site uses Akismet to reduce spam. Learn how your comment data is processed.