Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-6m3c-jc2v-9h92

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

Windows Print Spooler Elevation of Privilege Vulnerability

Windows Print Spooler Elevation of Privilege Vulnerability

EPSS

Процентиль: 96%
0.30378
Средний

9.8 Critical

CVSS3

Дефекты

CWE-269

Связанные уязвимости

CVSS3: 8.8
nvd
почти 4 года назад

<p>A remote code execution vulnerability exists when the Windows Print Spooler service improperly performs privileged file operations. An attacker who successfully exploited this vulnerability could run arbitrary code with SYSTEM privileges. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights.</p> <p><strong>UPDATE</strong> August 10, 2021: Microsoft has completed the investigation and has released security updates to address this vulnerability. Please see the Security Updates table for the applicable update for your system. We recommend that you install these updates immediately. This security update changes the Point and Print default behavior; please see <a href="https://support.microsoft.com/help/5005652">KB5005652</a>.</p>

CVSS3: 8.8
msrc
почти 4 года назад

Windows Print Spooler Remote Code Execution Vulnerability

CVSS3: 7.8
fstec
около 4 лет назад

Уязвимость диспетчера очереди печати Windows Print Spooler операционных систем Windows, позволяющая нарушителю повысить привилегии

EPSS

Процентиль: 96%
0.30378
Средний

9.8 Critical

CVSS3

Дефекты

CWE-269