CVSS v3
7.5
HIGH
EPSS Score
39.5%
exploit probability
CISA KEV
No
known exploited
Exploitation
—
SSVC status
An information disclosure vulnerability exists in the way that the Microsoft Server Message Block 3.1.1 (SMBv3) protocol handles certain requests, aka 'Windows SMBv3 Client/Server Information Disclosure Vulnerability'.
An information disclosure vulnerability exists in the way that the Microsoft Server Message Block 3.1.1 (SMBv3) protocol handles certain requests, aka 'Windows SMBv3 Client/Server Information Disclosure Vulnerability'.
Active exploitation of CVE-2020-1206 has not been confirmed. The EPSS score is 39.5%, indicating the estimated probability of exploitation in the next 30 days.
CVE-2020-1206 has a CVSS v3 base score of 7.5 (HIGH severity).
Use isMalicious to check if any of your IPs or domains are associated with this vulnerability's IOCs.
Ranked by exploit probability (EPSS).