CVE-2020-1048Patch(microsoft / windows_10)

LOWCVSS 7.8 · HIGH

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch microsoft windows_10 systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

An elevation of privilege vulnerability exists when the Windows Print Spooler service improperly allows arbitrary writing to the file system. An attacker who successfully exploited this vulnerability could run arbitrary code with elevated system privileges. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. To exploit this vulnerability, an attacker would have to log on to an affected system and run a specially crafted script or application. The update addresses the vulnerability by correcting how the Windows Print Spooler Component writes to the file system.

1.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-669

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • windows_10
  • windows_7
  • windows_8.1
  • windows_rt_8.1

Threat summary

  • Patch or workaround signal is available
  • 2 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 1 signal
  • General: 1 classified signal
  • Peaked 1d ago at 1 mentions (2026-04-04); latest day: 1
  • 2 total mentions across 2 days

Affected systems

Vendors
Products
windows_10windows_7windows_8.1windows_rt_8.1windows_server_2008windows_server_2012windows_server_2016windows_server_2019

8 versions affected across 8 products

Deep dive

Activity timeline2 mentions / 2d
00111Mentions · 2026-04-04: 1Mentions · 2026-05-15: 1Patch / Workaround · 2026-04-04: 1Technical Details · 2026-04-04: 104-0405-15
Signal classification2 categories
Patch
150.0%
General
150.0%
Classification over time
DateTotalLabels
2026-04-041
Patch1
2026-05-151
General1
Full discourse2 posts
  • truemorgan@_truemorgan
    General

    Windows: CVE-2017-0144 CVE-2017-0145 CVE-2008-4250 CVE-2019-0708 CVE-2020-1472 CVE-2021-34527 CVE-2021-26855 CVE-2020-1350 CVE-2003-0352 CVE-2014-6324 CVE-2017-0199 CVE-2021-40444 CVE-2022-30190 CVE-2021-31166 CVE-2022-21907 CVE-2019-1182 CVE-2019-1181 CVE-2020-0601 CVE-2023-29363 CVE-2023-32014 CVE-2025-24985 CVE-2025-24993 CVE-2024-38063 CVE-2022-34718 CVE-2021-26857 CVE-2021-36934 CVE-2022-37969 CVE-2022-41033 CVE-2022-38028 CVE-2023-28252 CVE-2024-26169 CVE-2025-29824 CVE-2025-30400 CVE-2025-32701 CVE-2025-32706 CVE-2016-0099 CVE-2020-1048 CVE-2017-8529 CVE-2020-0688 CVE-2021-42287 CVE-2021-42278 CVE-2022-26923 CVE-2021-34523 CVE-2021-31207 CVE-2026-32202 CVE-2017-5754 CVE-2017-5753 CVE-2018-3639 CVE-2019-11135 CVE-2018-3620

    Post summary

    The text lists a large set of Windows CVE identifiers without additional context or actionable information.

    10000106
    15 followersView on X
  • it-learn.io@it_learn_io
    Patch

    Step 4: Privilege Escalation Attacker finds: SeImpersonatePrivilege Runs: PrintSpoofer.exe -i -c powershell.exe Now has SYSTEM. Defense: Remove unnecessary privileges. Patch PrintSpoofer (CVE-2020-1048).

    Post summary

    The advisory notes a privilege escalation vector using PrintSpoofer (CVE‑2020‑1048) and recommends patching, but provides no exploit code or active exploitation evidence.

    1000035
    6 followersView on X
CPE platform detail20 entries

20 of 20 entries

PartVendorProductVersionTarget SWTarget HW
OSmicrosoftwindows_10---
OSmicrosoftwindows_101607--
OSmicrosoftwindows_101709--
OSmicrosoftwindows_101803--
OSmicrosoftwindows_101809--
OSmicrosoftwindows_101903--
OSmicrosoftwindows_101909--
OSmicrosoftwindows_7---
OSmicrosoftwindows_8.1---
OSmicrosoftwindows_rt_8.1---
OSmicrosoftwindows_server_2008---
OSmicrosoftwindows_server_2008r2-itanium
OSmicrosoftwindows_server_2008r2-x64
OSmicrosoftwindows_server_2012---
OSmicrosoftwindows_server_2012r2--
OSmicrosoftwindows_server_2016---
OSmicrosoftwindows_server_20161803--
OSmicrosoftwindows_server_20161903--
OSmicrosoftwindows_server_20161909--
OSmicrosoftwindows_server_2019---

Explore more