KEV · Actively exploited
CVE-2022-38028
HIGH 7.8
KEV
Windows Print Spooler Elevation of Privilege Vulnerability
EPSS
3.91%
above median
percentile 88.5%
CISA Known Exploited Vulnerability
- Added to KEV
- 2024-04-23
- Remediation deadline
- 2024-05-14
- Required action
- Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.
- Ransomware
- No
OS versions that fix this CVE
This CVE is resolved by the following OS security releases. Update the OS to at least the listed version.
- Windows Fixed in Windows Server 2022 (Server Core installation) 10.0.20348.1129 Windows Server 2022 10.0.20348.1129 Windows Server 2019 (Server Core installation) 10.0.17763.3532 Windows Server 2019 10.0.17763.3532 Windows Server 2016 (Server Core installation) 10.0.14393.5427 Windows Server 2016 10.0.14393.5427 Windows 11 22H2 · 2022-H2 10.0.22621.674 Windows 11 21H2 · 2021-H2 10.0.22000.1098 Windows 10 21H2 · 2021-H2 10.0.19044.2130 Windows 10 21H1 · 2021-H1 10.0.19043.2130 Windows 10 20H2 · 2020-H2 10.0.19042.2130 Windows 10 1809 · 2018-09 10.0.17763.3532 Windows 10 1607 · 2016-07 10.0.14393.5427