7.1
CVSSv3

CVE-2022-21997

Published: 09/02/2022 Updated: 08/08/2023
CVSS v2 Base Score: 3.6 | Impact Score: 4.9 | Exploitability Score: 3.9
CVSS v3 Base Score: 7.1 | Impact Score: 5.2 | Exploitability Score: 1.8
VMScore: 321
Vector: AV:L/AC:L/Au:N/C:N/I:P/A:P

Vulnerability Summary

Windows Print Spooler Elevation of Privilege Vulnerability

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft windows 10 -

microsoft windows 10 1607

microsoft windows server 2008 r2

microsoft windows server 2012 r2

microsoft windows server 2016 -

microsoft windows rt 8.1 -

microsoft windows server 2012 -

microsoft windows server 2008 -

microsoft windows 8.1 -

microsoft windows server 2019 -

microsoft windows 10 1809

microsoft windows 10 1909

microsoft windows 10 20h2

microsoft windows 10 21h1

microsoft windows 11 -

microsoft windows 7 sp1

microsoft windows server 20h2

microsoft windows server 2022

microsoft windows 10 21h2

Github Repositories

A Privilege Escalation Vulnerability In Windows Print Spooler On Feb 9, 2022: The US Cyber in Infrastructure Security Agency (CISA) added the Windows Print Spooler vulnerability to their list of actively exploited vulnerabilities The vulnerability was identified as CVE-2022–22718 with the Common Vulnerability Scoring System (CVSS) score rated as high at 72 This CVE ID

《Windows提权方法论》

《Windows提权方法论》 本项目用来记录自己在学习研究Windows提权过程中遇到的一些优秀资源,包括提权原理漏洞或思想方法工具等内容。Windows提权在后渗透过程中较为重要,尤其是对于权限维持至关重要。因此我们将持续更新Windows提权的相关内容!但提权有风险,提权需谨慎。不到非

Recent Articles

Microsoft manages a mere 51 security fixes for February update bundle
The Register • Thomas Claburn in San Francisco • 01 Jan 1970

Get our weekly newsletter Excitement this month can be found in SAP code, with critical Log4j repairs and a CISA warning

Patch Tuesday Microsoft for its February Patch Tuesday gave Windows admins just 51 fixes to apply, the smallest number of patches since the meager ration of 44 in August 2021. February tends to be a slow month for repairs because bugs left untended over the winter holidays often get dealt with in January, leaving not all that much for the following month. Perhaps more noteworthy is that there's not a single critical CVE listed in the February patch list. Fifty of the fixes are rated Important wh...