US cert has released a vulnerability note for the Print Spooler vulnerability CVE-2021-1675. Even though microsoft has release patch for this vulnerability but these does not address the public exploits. An attacker can gain control over the systems by exploiting these vulnerabilities.
Microsoft released the vulnerabilities on the June 1st 2018 but on June 21st it has added details like RCE can be performed by attacker after exploiting these vulnerabilities. CISA has recommended to disable the Print spooler services in the domain controllers and the systems where it is not being used.
According to Microsoft “Print spooler is a software service that manages printing processes. The spooler accepts print jobs from computers and makes sure that printer resources are available. The spooler also schedules the order in which print jobs are sent to the print queue for printing. In the early days of personal computers, users had to wait until files printed before performing other actions. Thanks to modern print spoolers, printing now has minimal impact on overall user productivity.”
It is recommended to disable the Print Spooler vulnerability using GPO.