PrintNightmare: Permanent disabling of Print Spooler RCE
The notorious vulnerability in the Print Spooler service; kept permanently under control on Domain Controllers with Point and Print restrictions.
The notorious vulnerability in the Print Spooler service; kept permanently under control on Domain Controllers with Point and Print restrictions.
CVE-2021-34527 (PrintNightmare) allowed the Print Spooler service to load arbitrary DLLs over RPC — remote SYSTEM code execution.
RestrictDriverInstallationToAdministrators registry key enabledThis record is retained in the archive for legacy WS2019 inventory compliance checks.
Stack-based buffer overflow in Windows DHCP Server allows an authorized attacker to execute code over an adjacent network.
Integer overflow or wraparound in Windows DHCP Server allows an unauthorized attacker to execute code over a network.
Microsoft Windows Advanced Local Procedure Call contains a heap-based buffer overflow vulnerability that allows an attacker to elevate privileges locally.