High severity7.8CISA KEVNVD Advisory· Published Feb 5, 2019· Updated Aug 13, 2026
CVE-2018-20250
CVE-2018-20250
Description
In WinRAR versions prior to and including 5.61, There is path traversal vulnerability when crafting the filename field of the ACE format (in UNACEV2.dll). When the filename field is manipulated with specific patterns, the destination (extraction) folder is ignored, thus treating the filename as an absolute path.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4- Check Point Software Technologies Ltd./WinRARv5Range: All versions prior and including 5.61
Patches
Vulnerability mechanics
References
8- packetstormsecurity.com/files/152618/RARLAB-WinRAR-ACE-Format-Input-Validation-Remote-Code-Execution.htmlnvdExploitThird Party AdvisoryVDB Entry
- research.checkpoint.com/extracting-code-execution-from-winrar/nvdExploitPress/Media CoverageThird Party Advisory
- www.exploit-db.com/exploits/46552/nvdExploitThird Party AdvisoryVDB Entry
- www.exploit-db.com/exploits/46756/nvdExploitThird Party AdvisoryVDB Entry
- www.rapid7.com/db/modules/exploit/windows/fileformat/winrar_acenvdThird Party Advisory
- www.securityfocus.com/bid/106948nvdBroken LinkThird Party AdvisoryVDB Entry
- www.cisa.gov/known-exploited-vulnerabilities-catalognvdUS Government Resource
- www.win-rar.com/whatsnew.htmlnvdRelease Notes
News mentions
1- Old WinRAR Flaw Fuels Attacks on Ukraine: How Unmanaged Software Keeps the Door OpenTrend Micro Research · Jun 8, 2026