CISA Known Exploited Vulnerability

CVE-2018-20250 Ransomware

RARLAB · WinRAR

WinRAR Absolute Path Traversal Vulnerability

Date added
BOD 22-01 due date
CWE CWE-36
Ransomware Known

CISA description

WinRAR Absolute Path Traversal vulnerability leads to Remote Code Execution

Required action

Apply updates per vendor instructions.