May 23, 2022 · Applied Cybernetics Group
CVE-2019-0703 — Microsoft Windows
Microsoft Windows SMB Information Disclosure Vulnerability
- Added to KEV
2022-05-23- Federal due date
2022-06-13- Vendor
- Microsoft
- Product
- Windows
- EPSS
- 95.5th percentile (score 0.192, as of
2026-06-08) - NVD CVSS v3.1
- —
- Ransomware use
- Unknown
- Upstream
- https://nvd.nist.gov/vuln/detail/CVE-2019-0703
CISA short description
An information disclosure vulnerability exists in the way that the Windows SMB Server handles certain requests, which could lead to information disclosure from the server.
Required action
Apply updates per vendor instructions.