You are here

Unpatched Microsoft Systems Vulnerable to CVE-2020-0796

Unpatched Microsoft Systems Vulnerable to CVE-2020-0796

Created: Friday, June 5, 2020 - 16:31
Categories:
Cybersecurity

The U.S. Department of Homeland Security’s Cybersecurity and Infrastructure Security Agency (CISA) is aware of publicly available and functional proof-of-concept (PoC) code that exploits CVE-2020-0796 in unpatched systems. Although Microsoft disclosed and provided updates for this vulnerability in March 2020, malicious cyber actors are targeting unpatched systems with the new PoC, according to recent open-source reports. CISA strongly recommends using a firewall to block SMB ports from the internet and to apply patches to critical- and high-severity vulnerabilities as soon as possible. CISA also encourages users and administrators to review the following resources and apply the necessary updates or workarounds. Read the advisory at CISA.