Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2009-0229


The Windows Printing Service in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP2, Vista Gold, SP1, and SP2, and Server 2008 SP2 allows local users to read arbitrary files via a crafted separator page, aka "Print Spooler Read File Vulnerability."


Published

2009-06-10T18:00:00.250

Last Modified

2025-04-09T00:30:58.490

Status

Deferred

Source

[email protected]

Severity

CVSSv2: 4.9 (MEDIUM)

CVSSv2 Vector

AV:L/AC:L/Au:N/C:C/I:N/A:N

  • Access Vector: LOCAL
  • Access Complexity: LOW
  • Authentication: NONE
  • Confidentiality Impact: COMPLETE
  • Integrity Impact: NONE
  • Availability Impact: NONE
Exploitability Score

3.9

Impact Score

6.9

Weaknesses
  • Type: Primary
    CWE-200

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System microsoft windows_2000 sp4 Yes
Operating System microsoft windows_2003_server sp2 Yes
Operating System microsoft windows_2003_server sp2 Yes
Operating System microsoft windows_2003_server sp2 Yes
Operating System microsoft windows_server_2008 * Yes
Operating System microsoft windows_server_2008 - Yes
Operating System microsoft windows_server_2008 - Yes
Operating System microsoft windows_server_2008 sp2 Yes
Operating System microsoft windows_server_2008 sp2 Yes
Operating System microsoft windows_vista * Yes
Operating System microsoft windows_vista * Yes
Operating System microsoft windows_vista gold Yes
Operating System microsoft windows_vista sp1 Yes
Operating System microsoft windows_vista sp2 Yes
Operating System microsoft windows_xp - Yes
Operating System microsoft windows_xp - Yes
Operating System microsoft windows_xp sp3 Yes

References