CVE-2020-1048
HIGH EXPLOITEDMicrosoft Spooler Local Privilege Elevation Vulnerability
Title source: metasploitDescription
An elevation of privilege vulnerability exists when the Windows Print Spooler service improperly allows arbitrary writing to the file system, aka 'Windows Print Spooler Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-1070.
Exploits (7)
metasploit
WORKING POC
NORMAL
by Yarden Shafir, Alex Ionescu, shubham0d, bwatters-r7 · rubypoc
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/windows/local/cve_2020_1048_printerdemon.rb
References (3)
Scores
CVSS v3
7.8
EPSS
0.7396
EPSS Percentile
98.8%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Details
VulnCheck KEV
2025-08-20
CWE
CWE-669
Status
published
Products (19)
microsoft/windows_10
microsoft/windows_10
1607
microsoft/windows_10
1709
microsoft/windows_10
1803
microsoft/windows_10
1809
microsoft/windows_10
1903
microsoft/windows_10
1909
microsoft/windows_7
microsoft/windows_8.1
microsoft/windows_rt_8.1
... and 9 more
Published
May 21, 2020
Tracked Since
Feb 18, 2026