Windows Hyper-V Elevation of Privilege Vulnerability
CVE-2022-35751
7.8HIGH
Key Information:
- Vendor
- Microsoft
- Status
- Vendor
- CVE Published:
- 31 May 2023
Summary
The Windows Hyper-V elevation of privilege vulnerability allows attackers to gain elevated permissions on affected systems, potentially compromising sensitive resources. This issue arises from the incorrect handling of objects in memory, leading to unintended access to privileged operations. Users are encouraged to apply the latest patches from Microsoft to mitigate the risks associated with this vulnerability.
Affected Version(s)
Windows 10 Version 1507 x64-based Systems 10.0.10240.0 < 10.0.10240.19387
Windows 10 Version 1607 x64-based Systems 10.0.14393.0 < 10.0.14393.5291
Windows 10 Version 1809 x64-based Systems 10.0.17763.0 < 10.0.17763.3287
References
CVSS V3.1
Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
Low
User Interaction:
None
Scope:
Changed
Timeline
Vulnerability published
Vulnerability Reserved
Collectors
NVD DatabaseMitre Database