CVE-2015-5663
https://notcve.org/view.php?id=CVE-2015-5663
The file-execution functionality in WinRAR before 5.30 beta 5 allows local users to gain privileges via a Trojan horse file with a name similar to an extensionless filename that was selected by the user. La funcionalidad de ejecución de archivo en WinRAR en versiones anteriores a 5.30 beta 5 permite a usuarios locales obtener privilegios a través de un archivo Troyano con un nombre similar a un nombre de archivo sin extensión que fue seleccionado por el usuario. • http://jvn.jp/en/jp/JVN64636058/index.html http://jvndb.jvn.jp/jvndb/JVNDB-2015-000199 http://www.securityfocus.com/bid/79666 http://www.securitytracker.com/id/1034881 • CWE-264: Permissions, Privileges, and Access Controls •
CVE-2008-7144
https://notcve.org/view.php?id=CVE-2008-7144
Multiple unspecified vulnerabilities in RARLAB WinRAR before 3.71 have unknown impact and attack vectors related to crafted (1) ACE, (2) ARJ, (3) BZ2, (4) CAB, (5) GZ, (6) LHA, (7) RAR, (8) TAR, or (9) ZIP files, as demonstrated by the OUSPG PROTOS GENOME test suite for Archive Formats. Múltiples vulnerabilidad no especificadas en RARLAB WinRAR anterior v3.71 tienen impacto desconocido y vectores atacados relacionados con la manipulación de ficheros (1) ACE, (2) ARJ, (3) BZ2, (4) CAB, (5) GZ, (6) LHA, (7) RAR, (8) TAR, o (9) ZIP, como se ha demostrado mediante la suite para el testeo de formatos de archivo PROTOS GENOME. • http://osvdb.org/43439 http://secunia.com/advisories/29407 http://www.cert.fi/haavoittuvuudet/joint-advisory-archive-formats.html http://www.ee.oulu.fi/research/ouspg/protos/testing/c10/archive http://www.vupen.com/english/advisories/2008/0916/references https://exchange.xforce.ibmcloud.com/vulnerabilities/41251 •
CVE-2005-4620 – WinRAR 3.30 - 'Filename' Local Buffer Overflow
https://notcve.org/view.php?id=CVE-2005-4620
Buffer overflow in WinRAR 3.50 and earlier allows local users to execute arbitrary code via a long command-line argument. NOTE: because this program executes with the privileges of the invoking user, and because remote programs do not normally have the ability to specify a command-line argument for this program, there may not be a typical attack vector for the issue that crosses privilege boundaries. Therefore this may not be a vulnerability. • https://www.exploit-db.com/exploits/1403 https://www.exploit-db.com/exploits/1404 http://www.rarlab.com/rarnew.htm http://www.securityfocus.com/archive/1/420679/100/0/threaded http://www.securityfocus.com/bid/15123 http://www.securityfocus.com/data/vulnerabilities/exploits/0xletzdance.c •
CVE-2005-3262 – RARLAB WinRar 2.90/3.x - UUE/XXE Invalid Filename Error Message Format String
https://notcve.org/view.php?id=CVE-2005-3262
Format string vulnerability in RARLAB WinRAR 2.90 through 3.50 allows remote attackers to execute arbitrary code via format string specifiers in a UUE/XXE file, which are not properly handled when WinRAR displays diagnostic errors related to an invalid filename. • https://www.exploit-db.com/exploits/26342 http://secunia.com/advisories/16973 http://secunia.com/secunia_research/2005-53/advisory http://www.rarlabs.com/rarnew.htm http://www.securityfocus.com/bid/15062 •
CVE-2005-3263
https://notcve.org/view.php?id=CVE-2005-3263
Stack-based buffer overflow in UNACEV2.DLL for RARLAB WinRAR 2.90 through 3.50 allows remote attackers to execute arbitrary code via an ACE archive containing a file with a long name. • http://archives.neohapsis.com/archives/fulldisclosure/2005-10/0266.html http://secunia.com/advisories/16973 http://secunia.com/secunia_research/2005-53/advisory http://www.osvdb.org/19915 http://www.rarlabs.com/rarnew.htm http://www.securityfocus.com/bid/15062 •