HIGH

CVE-2022-22718

Microsoft Windows 10 1507 2022-02-09 CVSS v3.1
CVSS
7.8
KEV

Description

Windows Print Spooler Elevation of Privilege Vulnerability

Summary dbcve.org

This is a local privilege escalation vulnerability in the Windows Print Spooler service that allows an authenticated low-privileged attacker to gain SYSTEM-level code execution on the affected machine. The vulnerability stems from improper access control handling within the Print Spooler component.

Mitigation

Apply the Microsoft security update (KB5008212 or subsequent) to all affected Windows systems. If immediate patching is not feasible, consider disabling the Print Spooler service on systems that do not require printing functionality as a temporary mitigation.

Patch Commit

EPSS Score

18.46%
Probability of exploitation in next 30 days
97.1th percentile

References

View on dbcve.org
Base CVE data derived from NVD (public domain). Enrichment by dbcve.org (CC-BY-4.0). Fetched via API.
Back to CVE