


Perceptive Security
SOC/SIEM Consultancy

RARLAB WinRAR contains a path traversal vulnerability allowing an attacker to execute code in the context of the current user.
Published:
9 december 2025 om 00:00:00
Alert date:
9 december 2025 om 20:01:36
Source:
cisa.gov
RARLAB WinRAR contains a path traversal vulnerability identified as CVE-2025-6218. This security flaw allows attackers to execute arbitrary code in the context of the current user through path traversal exploitation. The vulnerability affects WinRAR software and has been assigned a high criticality rating. Details are available through CISA's National Vulnerability Database and RARLAB's official security advisory. Organizations using WinRAR should prioritize patching this vulnerability due to its potential for code execution.
Technical details
Mitigation steps:
Affected products:
WinRAR
Related links:
https://nvd.nist.gov/vuln/detail/CVE-2025-6218
https://www.win-rar.com/singlenewsview.html?&L=0&tx_ttnews%5Btt_news%5D=276&cHash=b5165454d983fc9717bc8748901a64f9
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
