peter bassill · operator
$ cve CVE-2016-0088 JSON

CVE-2016-0088

9.3
CRITICAL · CVSS 3.0 · EPSS 7.5% (pctl 94)

In your normal cycle

Critical by CVSS (9.3), but no sign of active exploitation.

Description

Hyper-V in Microsoft Windows 8.1, Windows Server 2012 Gold and R2, and Windows 10 allows guest OS users to execute arbitrary code on the host OS via a crafted application, aka "Hyper-V Remote Code Execution Vulnerability."

Scoring

CVSS9.3 (CRITICAL, v3.0)
VectorCVSS:3.0/AV:L/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
EPSS7.54% — more likely to be exploited than 94% of all CVEs
WeaknessCWE-284
On CISA KEVno
Public exploitnone known
Published2016-04-12
Last modified2026-06-17

Affected (3)

VendorProduct
microsoftwindows 10
microsoftwindows 8.1
microsoftwindows server 2012

References

→ the Explorer  ·  watch your stack  ·  NVD