Immunity, Inc.
Name print_nightmare_rce
CVE CVE-2021-34527-1
Exploit Pack CANVAS
Descriptionprint_nightmare_rce
NotesCVE Name: CVE-2021-34527
VENDOR: Microsoft
NOTES: This exploit needs to open port 445, make sure it is available for proper operation
It is necessary root privileges to start the SMB server
You can use the Password or NtHash fields

Windows 10 1607 x64
Windows 10 1607 x86

Windows 10 1703 x64
Windows 10 1703 x86

Windows 10 1709 x64
Windows 10 1709 x86

Windows 10 1803 x64
Windows 10 1803 x86

Windows 10 1903 x64
Windows 10 1903 x86

Windows 10 1909 x64
Windows 10 1909 x86

Windows 10 20H1 x64
Windows 10 20H1 x86

Windows 10 20H2 x64
Windows 10 20H2 x86

Windows 10 21H1 x64
Windows 10 21H1 x86

Windows Server 2019

This module might work on other Windows 10 versions (not currently listed/not tested)

VersionsAffected: VERSIONS
Repeatability: Infinite
References: https://github.com/afwu/PrintNightmare
CVE Url: https://nvd.nist.gov/vuln/detail/cve-2021-34527
Date public: 07/01/2021
CVSS: 8.8

Learn more about the CANVAS Exploit Pack here: CANVAS