CVE-2016-0088: Microsoft Windows 10

Critical severity, CVSS 9.3. EPSS: 7.5% chance of exploitation in the next 30 days.

Hyper-V in Microsoft Windows 8.1, Windows Server 2012 Gold and R2, and Windows 10 allows guest OS users to execute arbitrary code on the host OS via a crafted application, aka "Hyper-V Remote Code Execution Vulnerability."

Affected products

  • Microsoft Windows 10: any version
  • Microsoft Windows 8.1: any version
  • Microsoft Windows Server 2012: affected versions not specified; version r2 only

Published 2016-04-12. Last modified 2026-06-17.