Loading HuntDB...

RARLAB WinRAR Code Execution Vulnerability

Added Aug. 24, 2023 Due Sept. 14, 2023 CVE-2023-38831
Overdue RARLAB / WinRAR Known Ransomware Use CWE-351

Description

RARLAB WinRAR contains an unspecified vulnerability that allows an attacker to execute code when a user attempts to view a benign file within a ZIP archive.

Required Action

Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

References

Additional Information

Catalog Version
2025.01.24
Catalog Released
Jan. 24, 2025
Days Until Due
0 days
Last Updated
6 months ago