Exploited Vulnerabilities Daily
🌐 日本語

ホーム › Microsoft

CVE-2020-0796: Microsoft SMBv3

EPSS99.8%KEV 1739件中148位
CVEの年2020追加まで約2年
同じベンダーの登録389
同じ製品の登録1
項目内容
ベンダーMicrosoft
製品SMBv3
脆弱性の名前Microsoft SMBv3 Remote Code Execution Vulnerability
KEVへの追加日2022年2月10日
米政府機関の対応期限2022年8月10日
ランサムウェアでの悪用確認あり
CWECWE-119

CISAの説明(英語)

A remote code execution vulnerability exists in the way that the Microsoft Server Message Block 3.1.1 (SMBv3) protocol handles certain requests. An attacker who successfully exploited the vulnerability could gain the ability to execute code on the target server or client.

NVD — CVE-2020-0796

CISAの既知の悪用された脆弱性カタログ(KEV)のデータです。EPSSはFIRSTが公表する「今後30日以内に悪用が観測される確率」の推定値で、週1回更新しています。対応は必ず各ベンダーの公式情報に従ってください。
このページについて

2022年2月10日にCISAの既知の悪用された脆弱性カタログ(KEV)に追加された、MicrosoftのSMBv3の脆弱性です。