CVE-2020-0796: SMBv3 "Wormable" Remote Code Execution Vulnerability
ID: f9df8583-2f60-54b8-9687-ab7fda2f28c5
STIX ID: report--f9df8583-2f60-54b8-9687-ab7fda2f28c5
Feed Name: TrustedSec blog
### Executive Summary This report details CVE-2020-0796 (SMBGhost), a critical remote code execution vulnerability in SMBv3 compression affecting Windows 10 (builds 1903/1909) and Windows Server 2019 (server core); exploitation can yield SYSTEM privileges. The advisory explains affected systems, practical mitigations (disable SMBv3 compression via registry/GPO, block outbound TCP/445 for clients), deployment guidance with WMI filters, and notes Microsoft issued a patch on March 12, 2020.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
