← back
CVE-2010-2729observed exploitation

CVE-2010-2729

82Vexday Risk Score

Patch now. It exploitation observed by VulnCheck and has a working public exploit.

ssvc Actepss 76%
from disclosure to weapon155 days
Published on NVDSep 15
1st PoC+155d
metasploitSep 14
VulnCheckSep 15
exploitation probability
76%top 1% of all CVEs
observed exploitation
yesVulnCheck
1 public exploit(s)
The Print Spooler service in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP1 and SP2, Windows Server 2008 Gold, SP2, and R2, and Windows 7, when printer sharing is enabled, does not properly validate spooler access permissions, which allows remote attackers to create files in a system directory, and consequently execute arbitrary code, by sending a crafted print request over RPC, as exploited in the wild in September 2010, aka "Print Spooler Service Impersonation Vulnerability."
Affected products
n/a · n/a
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.