vendor:
WinRAR
by:
Vredited By Alpha Programmer & Trap-Set U.H Team & K4P0
8.8
CVSS
HIGH
Buffer Overflow
120
CWE
Product Name: WinRAR
Affected Version From: 3.3
Affected Version To: 3.3
Patch Exists: YES
Related CWE: N/A
CPE: a:winrar:winrar
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows
2006
WinRAR Buffer Overflow 3.30 Exploit
WinRAR is prone to a buffer overflow vulnerability when handling specially crafted files. This vulnerability is due to a boundary error when handling long file names. An attacker can exploit this vulnerability to execute arbitrary code in the context of the application. This vulnerability affects WinRAR versions 3.30 and prior.
Mitigation:
Upgrade to the latest version of WinRAR.