Jump to content
YOUR-AD-HERE
HOSTING
TOOLS

Locked CVE-2023-40477 WinRAR: 6.00 - 6.23 beta 1


dEEpEst

Recommended Posts

Description

The vulnerability allows a remote attacker to compromise the affected system.

 

The vulnerability exists due to improper validation of array index when processing recovery volumes. A remote attacker can trick the victim to open a specially crafted archive and execute arbitrary code on the system.

 

Mitigation

This is the hidden content, please

 

Vulnerable software versions

WinRAR: 6.00 - 6.23 beta 1

This is the hidden content, please

Link to comment
Share on other sites

CVE-2023-38831 winrar exploit generator

Generate the default poc for test

This is the hidden content, please

Custom

Place the bait file and (evil) script file in the current directory, the bait file is recommended to be an image (.png, jpg) or a document (.pdf)

Run

This is the hidden content, please

to generate your exploit

Screenshots

Infected version: winrar <= 6.22

demo.png

 

Download

This is the hidden content, please

Link to comment
Share on other sites

Guest
This topic is now closed to further replies.
×
×
  • Create New...

Important Information

We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.