HIGH
CVE-2021-1675
CVSS
7.8
KEV
Description
Windows Print Spooler Remote Code Execution Vulnerability
Summary dbcve.org
Windows Print Spooler contains a vulnerability that allows remote attackers to execute arbitrary code by exploiting the Print Spooler service. The vulnerability has a CVSS score of 7.8 (HIGH), indicating significant risk if left unpatched.
Mitigation
Apply the relevant Microsoft security updates for CVE-2021-1675 to patch the Windows Print Spooler vulnerability. Consider disabling the Print Spooler service on systems where printing is not required.
EPSS Score
85.31%
Probability of exploitation in next 30 days
99.7th percentile
References
http://packetstormsecurity.com/files/163349/Microsoft-PrintNightmare-Proof-Of-Concept.html
Third Party Advisory, VDB Entry
http://packetstormsecurity.com/files/163351/PrintNightmare-Windows-Spooler-Service-Remote-Code-Execution.html
Third Party Advisory, VDB Entry
http://packetstormsecurity.com/files/167261/Print-Spooler-Remote-DLL-Injection.html
Exploit, Third Party Advisory, VDB Entry
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-1675
Patch, Vendor Advisory
https://www.kb.cert.org/vuls/id/383432
Third Party Advisory, US Government Resource
https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2021-1675
US Government Resource
Base CVE data derived from NVD (public domain). Enrichment by
dbcve.org
(CC-BY-4.0). Fetched via API.