CVE-XXXX-XXXX
Description
Enter the CVE of the vulnerability as the flag with the correct flag format:
picoCTF{CVE-XXXX-XXXXX}
replacing XXXX-XXXXX with the numbers for the matching vulnerability.
The CVE we're looking for is the first recorded remote code execution (RCE) vulnerability in 2021 in the Windows Print Spooler Service, which is available across desktop and server versions of Windows operating systems. The service is used to manage printers and print servers.
Solving
Because of the challenge description the printer vulnerability "print nightmare" popsup in my mind.
Lets investigate...
- I just did a quick research on google.de with the keywords
print
,spooler
andcve
and found it right away in the first result. - Result is titled with Windows Print Spooler Remote Code Execution Vulnerability
Windows Print Spooler Remote Code Execution Vulnerability
CVE-2021-34527
Security Vulnerability
Released: 1 Jul 2021 Last updated: 16 Jul 2021Assigning CNA:
Microsoft
MITRE CVE-2021-34527CVSS:3.0 8.8 / 8.2
Flag
So, according to the task, the flag is picoCTF{CVE-2021-34527}