PT-2020-3937 · Microsoft · Windows Print Spooler+1

Published

2020-08-09

·

Updated

2023-12-31

·

CVE-2020-1030

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions: Windows Print Spooler (affected versions not specified)
Description: The issue is related to inadequate access control in the Windows Print Spooler service, allowing an attacker to elevate their privileges by running a specially crafted application. This could enable the attacker to run arbitrary code with elevated system privileges, install programs, view, change, or delete data, or create new accounts with full user rights. To exploit this vulnerability, an attacker would need to log on to an affected system and run a specially crafted script or application.
Recommendations: To resolve the issue, apply the update that corrects how the Windows Print Spooler Component writes to the file system. As a temporary workaround, consider restricting access to the Windows Print Spooler service until the update is applied. Avoid running specially crafted scripts or applications on affected systems until the issue is resolved.

Fix

Improper Privilege Management

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2020-04330
CVE-2020-1030

Affected Products

Windows
Windows Print Spooler