High severity8.4NVD Advisory· Published Mar 26, 2026· Updated Mar 31, 2026
CVE-2018-25218
CVE-2018-25218
Description
PassFab RAR Password Recovery 9.3.2 contains a structured exception handler (SEH) buffer overflow vulnerability that allows local attackers to execute arbitrary code by supplying a malicious payload. Attackers can craft a payload with a buffer overflow, NSEH jump, and shellcode, then paste it into the 'Licensed E-mail and Registration Code' field during registration to trigger code execution.
Affected products
1Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
4- www.exploit-db.com/exploits/46008nvdExploitVDB Entry
- www.vulncheck.com/advisories/passfab-rar-password-recovery-seh-buffer-overflownvdThird Party Advisory
- www.passfab.com/downloads/passfab-rar-password-recovery.exenvdProduct
- www.passfab.com/products/rar-password-recovery.htmlnvdProduct
News mentions
0No linked articles in our index yet.