Microsoft SMBv3 Remote Code Execution Vulnerability

zetlyn/cve-kev vulnerability cve CVE-2020-0796 known 2022-02-10

Properties

cwesCWE-119
receipt
Source
CISA Known Exploited Vulnerabilities
Its words
CWE-119
Read by
field:cwes
Said since
2026-09-28 11:44 UTC
Last answered
2026-10-04 21:17 UTC
What the source handed over
{
  "cveID": "CVE-2020-0796",
  "cwes": "CWE-119",
  "dateAdded": "2022-02-10",
  "dueDate": "2022-08-10",
  "forensicTriage": "No",
  "knownRansomwareCampaignUse": "Known",
  "notes": "https://nvd.nist.gov/vuln/detail/CVE-2020-0796",
  "product": "SMBv3",
  "requiredAction": "Apply updates per vendor instructions.",
  "shortDescription": "A remote code execution vulnerability exists in the way that the Microsoft Server Message Block 3.1.1 (SMBv3) protocol handles certain requests. An attacker who successfully exploited the vulnerability could gain the ability to execute code on the target server or client.",
  "vendorProject": "Microsoft",
  "vulnerabilityName": "Microsoft SMBv3 Remote Code Execution Vulnerability"
}
due_date2022-08-10
receipt
Source
CISA Known Exploited Vulnerabilities
Its words
2022-08-10
Read by
field:dueDate
Said since
2026-09-28 11:44 UTC
Last answered
2026-10-04 21:17 UTC
What the source handed over
{
  "cveID": "CVE-2020-0796",
  "cwes": "CWE-119",
  "dateAdded": "2022-02-10",
  "dueDate": "2022-08-10",
  "forensicTriage": "No",
  "knownRansomwareCampaignUse": "Known",
  "notes": "https://nvd.nist.gov/vuln/detail/CVE-2020-0796",
  "product": "SMBv3",
  "requiredAction": "Apply updates per vendor instructions.",
  "shortDescription": "A remote code execution vulnerability exists in the way that the Microsoft Server Message Block 3.1.1 (SMBv3) protocol handles certain requests. An attacker who successfully exploited the vulnerability could gain the ability to execute code on the target server or client.",
  "vendorProject": "Microsoft",
  "vulnerabilityName": "Microsoft SMBv3 Remote Code Execution Vulnerability"
}
exploitedyes
receipt
Source
CISA Known Exploited Vulnerabilities
Its words
yes
Read by
const:yes
Said since
2026-09-28 11:44 UTC
Last answered
2026-10-04 21:17 UTC
What the source handed over
{
  "cveID": "CVE-2020-0796",
  "cwes": "CWE-119",
  "dateAdded": "2022-02-10",
  "dueDate": "2022-08-10",
  "forensicTriage": "No",
  "knownRansomwareCampaignUse": "Known",
  "notes": "https://nvd.nist.gov/vuln/detail/CVE-2020-0796",
  "product": "SMBv3",
  "requiredAction": "Apply updates per vendor instructions.",
  "shortDescription": "A remote code execution vulnerability exists in the way that the Microsoft Server Message Block 3.1.1 (SMBv3) protocol handles certain requests. An attacker who successfully exploited the vulnerability could gain the ability to execute code on the target server or client.",
  "vendorProject": "Microsoft",
  "vulnerabilityName": "Microsoft SMBv3 Remote Code Execution Vulnerability"
}
forensic_triagefalse
receipt
Source
CISA Known Exploited Vulnerabilities
Its words
No
Read by
field:forensicTriage
Said since
2026-09-28 11:44 UTC
Last answered
2026-10-04 21:17 UTC
What the source handed over
{
  "cveID": "CVE-2020-0796",
  "cwes": "CWE-119",
  "dateAdded": "2022-02-10",
  "dueDate": "2022-08-10",
  "forensicTriage": "No",
  "knownRansomwareCampaignUse": "Known",
  "notes": "https://nvd.nist.gov/vuln/detail/CVE-2020-0796",
  "product": "SMBv3",
  "requiredAction": "Apply updates per vendor instructions.",
  "shortDescription": "A remote code execution vulnerability exists in the way that the Microsoft Server Message Block 3.1.1 (SMBv3) protocol handles certain requests. An attacker who successfully exploited the vulnerability could gain the ability to execute code on the target server or client.",
  "vendorProject": "Microsoft",
  "vulnerabilityName": "Microsoft SMBv3 Remote Code Execution Vulnerability"
}
known_ransomware_campaign_useKnown
receipt
Source
CISA Known Exploited Vulnerabilities
Its words
Known
Read by
field:knownRansomwareCampaignUse
Said since
2026-09-28 11:44 UTC
Last answered
2026-10-04 21:17 UTC
What the source handed over
{
  "cveID": "CVE-2020-0796",
  "cwes": "CWE-119",
  "dateAdded": "2022-02-10",
  "dueDate": "2022-08-10",
  "forensicTriage": "No",
  "knownRansomwareCampaignUse": "Known",
  "notes": "https://nvd.nist.gov/vuln/detail/CVE-2020-0796",
  "product": "SMBv3",
  "requiredAction": "Apply updates per vendor instructions.",
  "shortDescription": "A remote code execution vulnerability exists in the way that the Microsoft Server Message Block 3.1.1 (SMBv3) protocol handles certain requests. An attacker who successfully exploited the vulnerability could gain the ability to execute code on the target server or client.",
  "vendorProject": "Microsoft",
  "vulnerabilityName": "Microsoft SMBv3 Remote Code Execution Vulnerability"
}
productSMBv3
receipt
Source
CISA Known Exploited Vulnerabilities
Its words
SMBv3
Read by
field:product
Said since
2026-09-28 11:44 UTC
Last answered
2026-10-04 21:17 UTC
What the source handed over
{
  "cveID": "CVE-2020-0796",
  "cwes": "CWE-119",
  "dateAdded": "2022-02-10",
  "dueDate": "2022-08-10",
  "forensicTriage": "No",
  "knownRansomwareCampaignUse": "Known",
  "notes": "https://nvd.nist.gov/vuln/detail/CVE-2020-0796",
  "product": "SMBv3",
  "requiredAction": "Apply updates per vendor instructions.",
  "shortDescription": "A remote code execution vulnerability exists in the way that the Microsoft Server Message Block 3.1.1 (SMBv3) protocol handles certain requests. An attacker who successfully exploited the vulnerability could gain the ability to execute code on the target server or client.",
  "vendorProject": "Microsoft",
  "vulnerabilityName": "Microsoft SMBv3 Remote Code Execution Vulnerability"
}
vendor_projectMicrosoft
receipt
Source
CISA Known Exploited Vulnerabilities
Its words
Microsoft
Read by
field:vendorProject
Said since
2026-09-28 11:44 UTC
Last answered
2026-10-04 21:17 UTC
What the source handed over
{
  "cveID": "CVE-2020-0796",
  "cwes": "CWE-119",
  "dateAdded": "2022-02-10",
  "dueDate": "2022-08-10",
  "forensicTriage": "No",
  "knownRansomwareCampaignUse": "Known",
  "notes": "https://nvd.nist.gov/vuln/detail/CVE-2020-0796",
  "product": "SMBv3",
  "requiredAction": "Apply updates per vendor instructions.",
  "shortDescription": "A remote code execution vulnerability exists in the way that the Microsoft Server Message Block 3.1.1 (SMBv3) protocol handles certain requests. An attacker who successfully exploited the vulnerability could gain the ability to execute code on the target server or client.",
  "vendorProject": "Microsoft",
  "vulnerabilityName": "Microsoft SMBv3 Remote Code Execution Vulnerability"
}

Text

Microsoft SMBv3 Remote Code Execution Vulnerability A remote code execution vulnerability exists in the way that the Microsoft Server Message Block 3.1.1 (SMBv3) protocol handles certain requests. An attacker who successfully exploited the vulnerability could gain the ability to execute code on the target server or client. Apply updates per vendor instructions. https://nvd.nist.gov/vuln/detail/CVE-2020-0796