Логотип exploitDog
bind:CVE-2023-38831
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2023-38831

Количество 4

Количество 4

nvd логотип

CVE-2023-38831

больше 2 лет назад

RARLAB WinRAR before 6.23 allows attackers to execute arbitrary code when a user attempts to view a benign file within a ZIP archive. The issue occurs because a ZIP archive may include a benign file (such as an ordinary .JPG file) and also a folder that has the same name as the benign file, and the contents of the folder (which may include executable content) are processed during an attempt to access only the benign file. This was exploited in the wild in April through October 2023.

CVSS3: 7.8
EPSS: Критический
debian логотип

CVE-2023-38831

больше 2 лет назад

RARLAB WinRAR before 6.23 allows attackers to execute arbitrary code w ...

CVSS3: 7.8
EPSS: Критический
github логотип

GHSA-w5x7-vwr2-4x27

больше 2 лет назад

RARLabs WinRAR before 6.23 allows attackers to execute arbitrary code when a user attempts to view a benign file within a ZIP archive. The issue occurs because a ZIP archive may include a benign file (such as an ordinary .JPG file) and also a folder that has the same name as the benign file, and the contents of the folder (which may include executable content) are processed during an attempt to access only the benign file. This was exploited in the wild in April through August 2023.

CVSS3: 7.8
EPSS: Критический
fstec логотип

BDU:2023-04958

больше 2 лет назад

Уязвимость файлового архиватора WinRAR, связанная с недостаточной проверкой входных данных, позволяющая нарушителю выполнить произвольный код

CVSS3: 8.8
EPSS: Критический

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2023-38831

RARLAB WinRAR before 6.23 allows attackers to execute arbitrary code when a user attempts to view a benign file within a ZIP archive. The issue occurs because a ZIP archive may include a benign file (such as an ordinary .JPG file) and also a folder that has the same name as the benign file, and the contents of the folder (which may include executable content) are processed during an attempt to access only the benign file. This was exploited in the wild in April through October 2023.

CVSS3: 7.8
94%
Критический
больше 2 лет назад
debian логотип
CVE-2023-38831

RARLAB WinRAR before 6.23 allows attackers to execute arbitrary code w ...

CVSS3: 7.8
94%
Критический
больше 2 лет назад
github логотип
GHSA-w5x7-vwr2-4x27

RARLabs WinRAR before 6.23 allows attackers to execute arbitrary code when a user attempts to view a benign file within a ZIP archive. The issue occurs because a ZIP archive may include a benign file (such as an ordinary .JPG file) and also a folder that has the same name as the benign file, and the contents of the folder (which may include executable content) are processed during an attempt to access only the benign file. This was exploited in the wild in April through August 2023.

CVSS3: 7.8
94%
Критический
больше 2 лет назад
fstec логотип
BDU:2023-04958

Уязвимость файлового архиватора WinRAR, связанная с недостаточной проверкой входных данных, позволяющая нарушителю выполнить произвольный код

CVSS3: 8.8
94%
Критический
больше 2 лет назад

Уязвимостей на страницу