vendor:
WinRAR
by:
alblalawi
7.5
CVSS
HIGH
Denial of Service
400
CWE
Product Name: WinRAR
Affected Version From: 5.8
Affected Version To: 5.8
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested: Microsoft Windows Version 10.0.18362.418 64bit
2019
winrar 5.80 64bit – Denial of Service
The exploit allows an attacker to cause a denial of service (DoS) by executing a specific sequence of actions in the WinRAR software. By opening a file.rar, accessing the help menu, and dragging the exploit to the window, the software crashes, resulting in a DoS condition.
Mitigation:
Update to the latest version of WinRAR or apply any patches or updates provided by the vendor.