WinRAR – Decompression or Arbitrary Code Execution

  • 11 October 2023
  • 0 replies
  • 14 views
WinRAR – Decompression or Arbitrary Code Execution

Fast Facts

  • With over 500 million users worldwide, WinRAR is the world’s most popular compression tool!

  • CVE-2023-38831, named ‘RARLAB WinRAR Code Execution Vulnerability is an arbitrary code execution vulnerability on WinRAR, with a CVSS score of 7.8

  • CVE-2023-38831 vulnerability has been patched in the latest version of WinRAR and the vulnerability resides on versions prior to 6.23.

  • Threat Actors have been targeting this vulnerability to deliver malware such as Agent Tesla, GuLoaderRemcos, and Darkme.

 

Curious to read more and understand how Logpoint’s platform can assists analysts in detecting and responding to security issues? Read the full article on Logpoint’s blog here:  WinRAR – Decompression or Arbitrary Code Execution

 


0 replies

Be the first to reply!

Reply