Critical Windows Print Spooler Vulnerability CVE-2021-34527 Exploited
ID: e82c0f97-6d7b-51ae-b7db-6aab224fa024
STIX ID: report--e82c0f97-6d7b-51ae-b7db-6aab224fa024
Feed Name: ThreatCluster
CVE-2021-34527 ("PrintNightmare") is a critical remote code execution vulnerability in the Windows Print Spooler (CVSSv3 8.8) that can allow authenticated users to execute arbitrary code on affected systems. Microsoft issued out-of-band updates, but the report states additional mitigations (e.g., disabling Point and Print) are required for full remediation; exploitation in the wild has been observed and attack tools like Mimikatz and Metasploit are available, raising the risk of follow-on ransomware campaigns.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
