logo

CVE-2020-0796: SMBv3 "Wormable" Remote Code Execution Vulnerability

ID: f9df8583-2f60-54b8-9687-ab7fda2f28c5

STIX ID: report--f9df8583-2f60-54b8-9687-ab7fda2f28c5

Feed Name: TrustedSec blog

Threat Score
75/100

Date Published: 2025-03-19

Date Updated: 2026-05-01

...
...

### Executive Summary This report details CVE-2020-0796 (SMBGhost), a critical remote code execution vulnerability in SMBv3 compression affecting Windows 10 (builds 1903/1909) and Windows Server 2019 (server core); exploitation can yield SYSTEM privileges. The advisory explains affected systems, practical mitigations (disable SMBv3 compression via registry/GPO, block outbound TCP/445 for clients), deployment guidance with WMI filters, and notes Microsoft issued a patch on March 12, 2020.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.