CVE-2020-0796
KEV RANSOMWARECRITICAL 10.0EPSS 99.8%
A remote code execution vulnerability exists in the way that the Microsoft Server Message Block 3.1.1 (SMBv3) protocol handles certain requests, aka 'Windows SMBv3 Client/Server Remote Code Execution Vulnerability'.
- CVSS v3.1
- 10.0 CRITICAL
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H - CVSS v3.1
- 10.0 CRITICAL
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H - CVSS v2.0
- 7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P - EPSS
- 99.81% chance of exploitation in the next 30 days, 100th percentile
- CISA KEV
- added 2022-02-10, used in ransomware campaigns
- Nuclei
- critical · CWE-119
- Published
- 2020-03-12
- Updated
- 2026-08-12
Proof-of-concept exploits (92)
- http://packetstormsecurity.com/files/156731/CoronaBlue-SMBGhost-Microsoft-Windows-10-SMB-…
- http://packetstormsecurity.com/files/156732/Microsoft-Windows-SMB-3.1.1-Remote-Code-Execu…
- http://packetstormsecurity.com/files/157110/SMBv3-Compression-Buffer-Overflow.html
- http://packetstormsecurity.com/files/158054/SMBleed-SMBGhost-Pre-Authentication-Remote-Co…
- 0x25bit/CVE-2020-0796-PoC18★ · 2020-04-01
- 0xeb-bp/cve-2020-07967★ · 2020-04-08
- AaronCaiii/CVE-2020-0796-POC0★ · 2020-11-06
- AdamSonov/smbGhostCVE-2020-07961★ · 2024-03-04
- Aekras1a/CVE-2020-0796-PoC18★ · 2020-04-01
- Ajomix/CVE-2020-07966★ · 2023-05-29
- ButrintKomoni/cve-2020-079617★ · 2020-03-12
- Dhoomralochana/Scanners-for-CVE-2020-0796-Testing1★ · 2020-03-12
- Fernandonov21/CVE0★ · 2024-02-15
- GryllsAaron/CVE-2020-0796-POC0★ · 2020-11-06
- GuoKerS/aioScan_CVE-2020-079615★ · 2020-03-18
- HarshRajSinghania/smbvulnrecon0★ · 2024-11-25
- HernanRodriguez1/Dorks-Shodan-2023247★ · 2025-01-13
- Jacob10s/SMBGHOST_EXPLOIT0★ · 2023-12-12
- Jagadeesh7532/-CVE-2020-0796-SMBGhost-Windows-10-SMBv3-Remote-Code-Execution-Vulnerability2★ · 2025-09-21
- Kaizzzo1/CVE-2020-07961★ · 2025-01-29
- Ken-Abruzzi/cve_2020_07960★ · 2020-10-10
- LabDookhtegan/CVE-2020-0796-EXP1★ · 2020-04-03
- MasterSploit/LPE---CVE-2020-07962★ · 2020-11-20
- Murasame-nc/CVE-2020-0796-LPE-POC0★ · 2021-10-09
- NoTsPepino/Shodan-Dorking3★ · 2024-06-27
- OldDream666/cve-2020-07961★ · 2023-06-04
- Opensitoo/cve-2020-07960★ · 2023-08-18
- Ra7mo0on/SMBGhost0★ · 2020-05-14
- RonnieNiu/CVE-2020_0796-exp3★ · 2020-06-03
- Rvn0xsy/CVE_2020_0796_CNA75★ · 2020-09-09
- SEHandler/CVE-2020-07961★ · 2022-11-10
- Sincan2/Wincok-11-dan-10-BOSD0★ · 2024-08-25
- T13nn3s/CVE-2020-079628★ · 2023-04-01
- TinToSer/CVE-2020-0796-LPE2★ · 2020-03-31
- TinToSer/cve2020-07962★ · 2020-03-13
- Yehender/tkpentest0★ · 2025-09-11
- ZecOps/CVE-2020-0796-LPE-POC244★ · 2020-04-02
- ZecOps/CVE-2020-0796-RCE-POC571★ · 2020-06-09
- abdullah098/CVE_2020_07960★ · 2023-11-01
- arzuozkan/CVE-2020-07961★ · 2022-06-07
- bmphx2/PoC-codes8★ · 2020-06-01
- bsec404/CVE-2020-07961★ · 2025-01-29
- chompie1337/SMBGhost_RCE_PoC1396★ · 2020-07-02
- codewithpradhan/SMBGhost-CVE-2020-0796-3★ · 2020-09-28
- cory-zajicek/CVE-2020-0796-DoS1★ · 2020-03-24
- cybermads/CVE-2020-07961★ · 2025-04-19
- danigargu/CVE-2020-07961359★ · 2020-12-07
- datntsec/CVE-2020-07961★ · 2020-12-25
- dungnm24/CVE-2020-07966★ · 2023-05-29
- eastmountyxz/CVE-2020-0796-SMB33★ · 2020-08-28
- eastmountyxz/SystemSecurity-ReverseAnalysis926★ · 2026-02-09
- eerykitty/CVE-2020-0796-PoC332★ · 2023-02-26
- esmwaSpyware/DoS-PoC-for-CVE-2020-0796-SMBGhost-0★ · 2025-08-06
- exp-sky/CVE-2020-07963★ · 2020-06-09
- f1tz/CVE-2020-0796-LPE-EXP17★ · 2020-03-31
- gnusec/soapffzblogposts_backup0★ · 2023-08-16
- halsten/CVE-2020-07960★ · 2020-05-28
- hectorgie/SMBGHOST0★ · 2020-08-25
- hungdnvp/POC-CVE-2020-07960★ · 2024-02-23
- jamf/CVE-2020-0796-LPE-POC244★ · 2020-04-02
- jamf/CVE-2020-0796-RCE-POC571★ · 2020-06-09
- jiansiting/CVE-2020-079665★ · 2020-04-01
- jstigerwalt/SMBGhost0★ · 2020-03-16
- julixsalas/CVE-2020-07961★ · 2022-01-28
- kn6869610/CVE-2020-07960★ · 2020-03-12
- krizzz07/CVE-2020-07960★ · 2023-01-29
- laolisafe/CVE-2020-07962★ · 2020-03-13
- lisinan988/CVE-2020-0796-exp0★ · 2021-11-26
- madanokr001/CVE-2020-07961★ · 2025-04-19
- manoz00/mm0★ · 2021-04-22
- maqeel-git/CVE-2020-07960★ · 2025-06-14
- maxpl0it/Unauthenticated-CVE-2020-0796-PoC22★ · 2020-03-15
- monjheta/CVE-2020-07960★ · 2025-02-26
- msuiche/smbaloo47★ · 2020-07-07
- orangmuda/CVE-2020-07965★ · 2021-11-01
- ran-sama/CVE-2020-07961★ · 2026-01-10
- rsmudge/CVE-2020-0796-BOF70★ · 2020-09-17
- silencer929/SMBGhost0★ · 2025-09-06
- supermandw2018/SystemSecurity-ReverseAnalysis1★ · 2022-11-19
- syadg123/CVE-2020-07962★ · 2022-12-08
- syadg123/SMBGhost0★ · 2020-04-07
- tango-j/CVE-2020-07964★ · 2020-03-31
- tdevworks/CVE-2020-0796-SMBGhost-Exploit-Demo0★ · 2025-05-30
- thelostworldFree/CVE-2020-079611★ · 2020-06-05
- tripledd/cve-2020-0796-vuln0★ · 2020-03-30
- vsai94/ECE9069_SMBGhost_Exploit_CVE-2020-0796-0★ · 2022-03-28
- vysecurity/CVE-2020-07965★ · 2020-03-13
- wsfengfan/CVE-2020-07960★ · 2020-03-14
- ysyyrps123/CVE-2020-0796-exp0★ · 2020-11-11
- zathizh/cve-796-mit0★ · 2020-06-21
- zerodayblitz/NetSuite-network-exploitation-tool0★ · 2026-07-25
- thai1012/cve-2020-0796
Nuclei templates (1)
Metasploit modules (1)
ExploitDB entries (3)
- https://www.exploit-db.com/exploits/48537
- https://www.exploit-db.com/exploits/48267
- https://www.exploit-db.com/exploits/48216