High SEVERITY — Vulnerability

PrintNightmare: Permanent disabling of Print Spooler RCE

The notorious vulnerability in the Print Spooler service; kept permanently under control on Domain Controllers with Point and Print restrictions.

Platform
Windows Server
Version
2019
CVE Record
CVE-2021-34527
CVSS Score
8.8/10
Advisory
KB5004946
Published
06 July 2021
Views
5
Primary source: Review the official advisory at msrc.microsoft.com Kaynağa Git

Archive Record

CVE-2021-34527 (PrintNightmare) allowed the Print Spooler service to load arbitrary DLLs over RPC — remote SYSTEM code execution.

Implemented permanent mitigations

  • KB5004946+ updates
  • Spooler service on Domain Controllers disabled
  • RestrictDriverInstallationToAdministrators registry key enabled

This record is retained in the archive for legacy WS2019 inventory compliance checks.

Windows Server — Related Advisories

VIEW ALL →