CVE-2023-38831RARLAB WinRAR Code Execution Vulnerability

PUBLISHEDvulnerability record
2023-08-24 · last modified June 21, 2025

Metadata

CVE ID:
CVE-2023-38831
Project:
RARLAB
Product:
WinRAR
Date Added:
2023-08-24
Due Date:
2023-09-14
Last Updated:
June 21, 2025

Vulnerability Name

RARLAB WinRAR Code Execution Vulnerability

Description

RARLAB WinRAR contains an unspecified vulnerability that allows an attacker to execute code when a user attempts to view a benign file within a ZIP archive.

Known To Be Used in Ransomware Campaigns?

Ransomware Status:
KNOWN

Action

Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

Additional Notes

Related News Articles

Related Weaknesses