CVE-2019-1310 is a denial of service vulnerability affecting Microsoft Hyper-V Network Switch on Windows 10, Windows Server 2016, and Windows Server 2019. It arises from improper input validation when a privileged user on a guest operating system interacts with the host. This vulnerability has a CVSS score of 6.8 (Medium), indicating a network-based attack with low complexity, requiring high privileges, and resulting in high availability impact. There is no evidence of active exploitation, nor are there publicly available exploit modules in Metasploit or ExploitDB. Despite this, the vulnerability has received some community discussion and media coverage, as noted in a BleepingComputer article.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
1803CPE matchmatch criteria | cpe:2.3:o:microsoft:windows_10:1803:*:*:*:*:*:x64:* | ||
1809CPE matchmatch criteria | cpe:2.3:o:microsoft:windows_10:1809:*:*:*:*:*:x64:* | ||
1903CPE matchmatch criteria | cpe:2.3:o:microsoft:windows_10:1903:*:*:*:*:*:x64:* | ||
1803CPE matchmatch criteria | cpe:2.3:o:microsoft:windows_server_2016:1803:*:*:*:*:*:*:* | ||
1903CPE matchmatch criteria | cpe:2.3:o:microsoft:windows_server_2016:1903:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:N/I:N/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.