Skip to main content

SMBv3 vulnerabilities

1 published alerts for Microsoft SMBv3.

Actively exploited (KEV)Ransomware

CVE-2020-0796

Microsoft SMBv3 Remote Code Execution Vulnerability

Microsoft SMBv3 is listed in CISA's Known Exploited Vulnerabilities catalog (CVE-2020-0796). A remote code execution vulnerability exists in the way that the Microsoft Server Message Block 3.1.1 (SMBv3) protocol handles certain requests. An attacker who successfully exploited the vulnerability could gain the ability to execute code on the target server or client. CISA remediation due date: 2022-08-10. If you need help checking exposure, call (864) 335-9223.