CVE-2022-29114
CVSS 3.1 Score 5.5 of 10 (medium)
Details
Summary
CVE-2022-29114 is a newly disclosed vulnerability affecting the Windows Print Spooler service. This issue allows unauthenticated attackers to gain access to sensitive information, including printer details, data in print jobs, and potentially user credentials. The vulnerability is caused by insufficient access control checks in the service. Microsoft has released a patch to address this issue, and it is strongly recommended that users install it as soon as possible to mitigate the risk. Failure to do so could lead to information disclosure, possible escalation to remote code execution, and potential data breaches.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Microsoft Windows 10
- Microsoft Windows Server 2012
- Microsoft Windows 8.1
- Microsoft Windows Server 2016
- Microsoft Windows Server 2019
Affected Vendors
- Microsoft