CVE-2021-1675

high

Description

Windows Print Spooler Remote Code Execution Vulnerability

From the Tenable Blog

CVE-2021-1675: Proof-of-Concept Leaked for Critical Windows Print Spooler Vulnerability
CVE-2021-1675: Proof-of-Concept Leaked for Critical Windows Print Spooler Vulnerability

Published: 2021-06-29

Researchers published and deleted proof-of-concept code for a remote code execution vulnerability in Windows Print Spooler, called PrintNightmare, though the PoC is likely still available. Update July 2: The Background, Analysis and Solution sections have been updated with new information for CVE-2021-34527 issued by Microsoft on July 1. No patch has yet been released for the new CVE, but additional information and mitigation options are offered in the advisory.

References

https://github.com/VelesSecurity/CVE-2021-1675-PrintNightmare-Analysis

https://github.com/kaiw-icspark25/PrintNightmare-CVE-2021-1675-Analysis

https://github.com/HermesNA-1/SnakeSploit

https://github.com/joel6948/CVE-Writeups

https://github.com/Gorstak-Zadar/Patcher

https://github.com/ccordeiro/CVE-2021-1675

https://github.com/VoiidByte/Impacket

https://github.com/ArtAtrium/PrintNightmare

https://github.com/GlacierGossip/PrintNightmare

https://github.com/CameraShutterBug/PrintNightmare

https://github.com/ozzy76/cveCheck

https://github.com/0xSs0rZ/Windows_Exploit

https://github.com/r1skkam/PrintNightmare

https://github.com/SaintsConnor/Exploits

https://github.com/m8sec/CVE-2021-34527

https://github.com/imhunterand/PenetrationTesterRE

https://github.com/CnHack3r/Awesome-hacking-tools

https://github.com/fumamatar/NimNightmare

https://github.com/5l1v3r1/CVE-2021-1675-Mitigation-For-Systems-That-Need-Spooler

https://github.com/Sirius-RJ/FullstackAcademy-Printernightmare-writeup-2105-E.C.A.R.

https://github.com/Wra7h/SharpPN

https://github.com/ly4k/PrintNightmare

https://github.com/Tomparte/PrintNightmare

https://github.com/hahaleyile/my-CVE-2021-1675

https://github.com/galoget/PrintNightmare-CVE-2021-1675-CVE-2021-34527

https://github.com/JumpsecLabs/PrintNightmare

https://github.com/byt3bl33d3r/ItWasAllADream

https://github.com/nemo-wq/PrintNightmare-CVE-2021-34527

https://github.com/ozergoker/PrintNightmare

https://github.com/gohrenberg/CVE-2021-1675-Mitigation-For-Systems-That-Need-Spooler

https://github.com/ptter23/CVE-2021-1675

https://github.com/Leonidus0x10/CVE-2021-1675-SCANNER

https://github.com/hlldz/CVE-2021-1675-LPE

https://github.com/evilashz/CVE-2021-1675-LPE-EXP

https://github.com/LaresLLC/CVE-2021-1675

https://github.com/cube0x0/CVE-2021-1675

https://github.com/yu2u/CVE-2021-1675

https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2021-1675

https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-1675

http://packetstormsecurity.com/files/167261/Print-Spooler-Remote-DLL-Injection.html

Details

Source: Mitre, NVD

Published: 2021-06-08

Updated: 2026-08-12

Named Vulnerability: PrintNightmareKnown Exploited Vulnerability (KEV)

Risk Information

CVSS v2

Base Score: 9.3

Vector: CVSS2#AV:N/AC:M/Au:N/C:C/I:C/A:C

Severity: High

CVSS v3

Base Score: 7.8

Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Severity: High

EPSS

EPSS: 0.86132