HIGH
CVE-2022-38028
CVSS
7.8
KEV
Description
Windows Print Spooler Elevation of Privilege Vulnerability
Summary dbcve.org
CVE-2022-38028 is an Elevation of Privilege vulnerability in the Windows Print Spooler service that allows a local authenticated attacker to gain elevated system privileges. The vulnerability exploits a flaw in how the Print Spooler handles certain printer driver operations, enabling privilege escalation from a low-privileged user context to NT AUTHORITY\SYSTEM.
Mitigation
Apply the relevant Microsoft security update for CVE-2022-38028. If the Print Spooler service is not required in the environment, consider disabling it to reduce the attack surface.
EPSS Score
14.95%
Probability of exploitation in next 30 days
96.6th percentile
References
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-38028
Patch, Vendor Advisory
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2022-38028
Patch, Vendor Advisory
https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2022-38028
US Government Resource
Base CVE data derived from NVD (public domain). Enrichment by
dbcve.org
(CC-BY-4.0). Fetched via API.