CVE Database
/

CVE-2010-2729

Back to search

CVE-2010-2729

Published: Sep 15, 2010

Modified: Aug 7, 2024

PUBLISHED

Description

The Print Spooler service in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP1 and SP2, Windows Server 2008 Gold, SP2, and R2, and Windows 7, when printer sharing is enabled, does not properly validate spooler access permissions, which allows remote attackers to create files in a system directory, and consequently execute arbitrary code, by sending a crafted print request over RPC, as exploited in the wild in September 2010, aka "Print Spooler Service Impersonation Vulnerability."

VendorProductVersions

n/a

n/a

affected
n/a

References

MS10-061
vendor-advisory
x_refsource_MS
oval:org.mitre.oval:def:7358
vdb-entry
signature
x_refsource_OVAL

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now