EXPOSURES › CVE-2018-20250
CVE-2018-20250
CRITICAL ⌖ ON CISA KEV · EXPLOITED
DETAIL
⚡ RCE
⌖ EXPLOITED IN THE WILD
SHAME 95/100
ransomwarerceexploited-in-wild
WinRAR's path traversal vulnerability allowed remote code execution and has been actively exploited in ransomware attacks, demonstrating a critical failure to control user input and validate file paths.
▸ RECOMMENDED ACTION Actively exploited (CISA KEV) — remediate now, ahead of your normal patch cycle.
PLAYERS IMPLICATED
DESCRIPTION
WinRAR Absolute Path Traversal vulnerability leads to Remote Code Execution
AFFECTED FEDRAMP PRODUCTS · 0
No correlated FedRAMP products.