KEV · Actively exploited
CVE-2022-21999
HIGH 7.8
KEV
Windows Print Spooler Elevation of Privilege Vulnerability
EPSS
73.21%
exploit likely
percentile 98.8%
CISA Known Exploited Vulnerability
- Added to KEV
- 2022-03-25
- Remediation deadline
- 2022-04-15
- Required action
- Apply updates per vendor instructions.
- Ransomware
- Yes, known ransomware campaign
OS versions that fix this CVE
This CVE is resolved by the following OS security releases. Update the OS to at least the listed version.
- Windows Fixed in Windows Server 2022 (Server Core installation) 10.0.20348.525 Windows Server 2022 10.0.20348.525 Windows Server 2019 (Server Core installation) 10.0.17763.2565 Windows Server 2019 10.0.17763.2565 Windows Server 2016 (Server Core installation) 10.0.14393.4946 Windows Server 2016 10.0.14393.4946 Windows 11 21H2 · 2021-H2 10.0.22000.493 Windows 10 21H2 · 2021-H2 10.0.19044.1526 Windows 10 21H1 · 2021-H1 10.0.19043.1526 Windows 10 20H2 · 2020-H2 10.0.19042.1526 Windows 10 1909 · 2019-09 10.0.18363.2094 Windows 10 1809 · 2018-09 10.0.17763.2565 Windows 10 1607 · 2016-07 10.0.14393.4946