CVE-2021-1675

high

Description

Windows Print Spooler Remote Code Execution Vulnerability

From the Tenable Blog

CVE-2021-1675: Proof-of-Concept Leaked for Critical Windows Print Spooler Vulnerability
CVE-2021-1675: Proof-of-Concept Leaked for Critical Windows Print Spooler Vulnerability

Published: 2021-06-29

Researchers published and deleted proof-of-concept code for a remote code execution vulnerability in Windows Print Spooler, called PrintNightmare, though the PoC is likely still available. Update July 2: The Background, Analysis and Solution sections have been updated with new information for CVE-2021-34527 issued by Microsoft on July 1. No patch has yet been released for the new CVE, but additional information and mitigation options are offered in the advisory.

References

http://packetstormsecurity.com/files/163349/Microsoft-PrintNightmare-Proof-Of-Concept.html

http://packetstormsecurity.com/files/163351/PrintNightmare-Windows-Spooler-Service-Remote-Code-Execution.html

http://packetstormsecurity.com/files/167261/Print-Spooler-Remote-DLL-Injection.html

https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-1675

https://www.kb.cert.org/vuls/id/383432

Details

Published: 2021-06-08

Risk Information

CVSS v2

Base Score: 9.3

Vector: CVSS2#AV:N/AC:M/Au:N/C:C/I:C/A:C

Severity: High

CVSS v3

Base Score: 7.8

Vector: CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Severity: High