Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Format string vulnerability in RARLAB WinRAR 2.90 through 3.50 allows remote attackers to execute arbitrary code via format string specifiers in a UUE/XXE file, which are not properly handled when WinRAR displays diagnostic errors related to an invalid filename.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
RARLAB WinRAR UUE/XXE编码文件 远程代码执行漏洞
Vulnerability Description
WinRar是非常流行的压缩/解压工具。 在显示诊断错误消息通知用户UUE/XXE编码文件中存在无效的文件名时存在格式串漏洞,导致在解码恶意的UUE/XXE文件时会执行任意代码。
CVSS Information
N/A
Vulnerability Type
N/A