CVE-2020-1048
An elevation of privilege vulnerability exists when the Windows Print Spooler service improperly allows arbitrary writing to the file system, aka 'Windows Print Spooler Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-1070.
- Affected products
- Windows, Windows Print Spooler
- Microsoft Windows 10
- All versions
- Microsoft Windows 7
- All versions
- Microsoft Windows 8.1
- All versions
- Microsoft Windows Rt 8.1
- All versions
- Microsoft Windows Server 2008
- All versions
- Microsoft Windows Server 2012
- All versions
- CVSS 3.1
- 7.8 HIGH
- EPSS
- 16.5% (97th percentile)
- Weakness
- CWE-669
- NVD status
- Modified
- Published
- 2020-05-21
CVE-2020-1048 at NVD
10 known exploits for CVE-2020-1048
Proof-of-concept code and exploit modules indexed by Sploitus
PatchChecker - Web-based Check For Windows Privesc Vulnerabilities
Microsoft Spooler Local Privilege Elevation Exploit
Microsoft Spooler Local Privilege Elevation
Exploit for Time-of-check Time-of-use (TOCTOU) Race Condition in Microsoft
Exploit for Time-of-check Time-of-use (TOCTOU) Race Condition in Microsoft
Exploit for Time-of-check Time-of-use (TOCTOU) Race Condition in Microsoft
Exploit for Incorrect Resource Transfer Between Spheres in Microsoft
Exploit for Exposure of Sensitive Information to an Unauthorized Actor in Microsoft
Exploit for Incorrect Resource Transfer Between Spheres in Microsoft
Microsoft Spooler Local Privilege Elevation Vulnerability