THREAT OPS › CVEs › CVE-2021-34527
CVE-2021-34527 — Microsoft Windows Print Spooler Remote Code Execution Vulnerability
Microsoft Windows Print Spooler contains an unspecified vulnerability due to the Windows Print Spooler service improperly performing privileged file operations. Successful exploitation allows an attacker to perform remote code execution with SYSTEM privileges. The vulnerability is also known under the moniker of PrintNightmare.
Vulnerability details
- Affected productsWindows
- KEV remediation due2022-05-03
Related reporting
- Automating GOAD and Live Malware Labselastic_security
- [NVD] CVE-2021-34527 (HIGH 8.8) — A remote code execution vulnerability exists when the Windows Print Spooler service improperly performs privileged file operations. An attacker who successfully exploited this vulnerability could run arbitrary code with SYSTEM privileges. An attacker could then install programs; nvd