CVE-2005-4620 EXPLOIT
4.6
MEDIUM · CVSS 2.0 · EPSS 1.5% (pctl 73)
Patch early
A public exploit exists.
Description
Buffer overflow in WinRAR 3.50 and earlier allows local users to execute arbitrary code via a long command-line argument. NOTE: because this program executes with the privileges of the invoking user, and because remote programs do not normally have the ability to specify a command-line argument for this program, there may not be a typical attack vector for the issue that crosses privilege boundaries. Therefore this may not be a vulnerability.
Scoring
| CVSS | 4.6 (MEDIUM, v2.0) |
|---|---|
| Vector | AV:L/AC:L/Au:N/C:P/I:P/A:P |
| EPSS | 1.48% — more likely to be exploited than 73% of all CVEs |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2005-12-31 |
| Last modified | 2026-06-16 |
Affected (1)
| Vendor | Product |
|---|---|
| rarlab | winrar |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | WinRAR 3.30 - 'Filename' Local Buffer Overflow (1) | 2006-01-04 |
| exploit-db | WinRAR 3.30 - 'Filename' Local Buffer Overflow (2) | 2006-01-04 |
References
- http://www.rarlab.com/rarnew.htm
- http://www.securityfocus.com/archive/1/420679/100/0/threaded
- http://www.securityfocus.com/bid/15123
- http://www.securityfocus.com/data/vulnerabilities/exploits/0xletzdance.c
- http://www.rarlab.com/rarnew.htm
- http://www.securityfocus.com/archive/1/420679/100/0/threaded
- http://www.securityfocus.com/bid/15123
- http://www.securityfocus.com/data/vulnerabilities/exploits/0xletzdance.c
→ the Explorer · watch your stack · NVD