Vulnerability Watch

Forum Discussion

snarang's avatar
snarang
Product Team
5 years ago

CVE-2020-0796: Patch Available for Critical Remote Code...

CVE-2020-0796: Patch Available for Critical Remote Code Execution Flaw in Microsoft SMBv3

This is a follow-up to our previous post about CVE-2020-0796, a “wormable” remote code execution flaw in Microsoft SMBv3 that was mistakenly disclosed by another security vendor on March 10 during Patch Tuesday.

On March 12, Microsoft released an out-of-band patch for this vulnerability. Patches are available for Windows 10 version 1903 and 1909 and Windows Server version 1903 and 1909.

Security researchers have already started developing proof-of-concept exploits that can cause a denial of service or elevate privileges using this vulnerability.

For more information, including details about our product coverage, please visit our updated blog post.

No RepliesBe the first to reply