CVE-2015-5663
https://notcve.org/view.php?id=CVE-2015-5663
The file-execution functionality in WinRAR before 5.30 beta 5 allows local users to gain privileges via a Trojan horse file with a name similar to an extensionless filename that was selected by the user. La funcionalidad de ejecución de archivo en WinRAR en versiones anteriores a 5.30 beta 5 permite a usuarios locales obtener privilegios a través de un archivo Troyano con un nombre similar a un nombre de archivo sin extensión que fue seleccionado por el usuario. • http://jvn.jp/en/jp/JVN64636058/index.html http://jvndb.jvn.jp/jvndb/JVNDB-2015-000199 http://www.securityfocus.com/bid/79666 http://www.securitytracker.com/id/1034881 • CWE-264: Permissions, Privileges, and Access Controls •
CVE-2008-7144
https://notcve.org/view.php?id=CVE-2008-7144
Multiple unspecified vulnerabilities in RARLAB WinRAR before 3.71 have unknown impact and attack vectors related to crafted (1) ACE, (2) ARJ, (3) BZ2, (4) CAB, (5) GZ, (6) LHA, (7) RAR, (8) TAR, or (9) ZIP files, as demonstrated by the OUSPG PROTOS GENOME test suite for Archive Formats. Múltiples vulnerabilidad no especificadas en RARLAB WinRAR anterior v3.71 tienen impacto desconocido y vectores atacados relacionados con la manipulación de ficheros (1) ACE, (2) ARJ, (3) BZ2, (4) CAB, (5) GZ, (6) LHA, (7) RAR, (8) TAR, o (9) ZIP, como se ha demostrado mediante la suite para el testeo de formatos de archivo PROTOS GENOME. • http://osvdb.org/43439 http://secunia.com/advisories/29407 http://www.cert.fi/haavoittuvuudet/joint-advisory-archive-formats.html http://www.ee.oulu.fi/research/ouspg/protos/testing/c10/archive http://www.vupen.com/english/advisories/2008/0916/references https://exchange.xforce.ibmcloud.com/vulnerabilities/41251 •
CVE-2006-3845 – RARLAB WinRAR 3.x - LHA Filename Handling Buffer Overflow
https://notcve.org/view.php?id=CVE-2006-3845
Stack-based buffer overflow in lzh.fmt in WinRAR 3.00 through 3.60 beta 6 allows remote attackers to execute arbitrary code via a long filename in a LHA archive. Desbordamiento de búfer basado en pila en lzh.fmt en WinRAR 3.00 hasta 3.60 beta 6 permite a atacantes remotos ejecutar código de su elección a través de un nombre de archivo en un archivo LHA. • https://www.exploit-db.com/exploits/28235 http://hustlelabs.com/advisories/04072006_rarlabs.pdf http://secunia.com/advisories/21080 http://www.rarlabs.com/rarnew.htm http://www.securityfocus.com/bid/19043 http://www.vupen.com/english/advisories/2006/2867 https://exchange.xforce.ibmcloud.com/vulnerabilities/27815 •
CVE-2005-4474
https://notcve.org/view.php?id=CVE-2005-4474
Buffer overflow in the "Add to archive" command in WinRAR 3.51 allows user-assisted attackers to cause a denial of service (crash) and possibly execute arbitrary code by tricking the user into adding a file whose filename contains a non-default code page and non-ANSI characters, as demonstrated using a Chinese filename, possibly due to buffer expansion when using the WideCharToMultiByte API. NOTE: it is not clear whether this problem can be exploited for code execution. If not, then perhaps the user-assisted nature of the attack should exclude the issue from inclusion in CVE. • http://securityreason.com/securityalert/290 http://www.securityfocus.com/archive/1/420006/100/0/threaded http://www.securityfocus.com/bid/15999 •