PT-2023-4552 · Winrar · Winrar
Andrey Polovinkin
·
Published
2023-08-15
·
Updated
2025-08-30
·
CVE-2023-38831
10
High
Base vector | Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions:
WinRAR versions prior to 6.23
Description:
The vulnerability in WinRAR allows attackers to execute arbitrary code when a user attempts to view a benign file within a ZIP archive. This occurs because a ZIP archive may include a benign file and a folder with the same name, and the contents of the folder are processed during an attempt to access the benign file. The issue has been exploited in the wild since at least April 2023. Multiple APT groups have exploited this flaw, and it has been used to target various industries, including cryptocurrency and government entities. The vulnerability is estimated to have been used in attacks against traders and has been linked to state-backed threat actors from Russia and China.
Recommendations:
To resolve the issue, update WinRAR to version 6.23 or later. As a temporary workaround, consider disabling the use of ZIP archives or restricting access to the vulnerable module until a patch is available. Additionally, be cautious when opening files from unknown sources, and ensure that all software is up to date with the latest security patches.
Exploit
Fix
RCE
Insufficient Verification of Data Authenticity
Related Identifiers
Affected Products
References · 462
- 🔥 https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/windows/fileformat/winrar_cve_2023_38831.rb⭐ 35280 🔗 14253 · Exploit
- 🔥 https://github.com/b1tg/CVE-2023-38831-winrar-exploit⭐ 788 🔗 140 · Exploit
- 🔥 https://github.com/Garck3h/cve-2023-38831⭐ 129 🔗 22 · Exploit
- 🔥 https://github.com/ignis-sec/CVE-2023-38831-RaRCE⭐ 115 🔗 18 · Exploit
- 🔥 https://github.com/BoredHackerBlog/winrar_CVE-2023-38831_lazy_poc⭐ 92 🔗 17 · Exploit
- 🔥 https://github.com/HDCE-inc/CVE-2023-38831⭐ 70 🔗 13 · Exploit
- 🔥 https://github.com/knight0x07/WinRAR-Code-Execution-Vulnerability-CVE-2023-38831⭐ 41 🔗 12 · Exploit
- 🔥 https://github.com/Maalfer/CVE-2023-38831_ReverseShell_Winrar-RCE⭐ 22 🔗 7 · Exploit
- 🔥 https://github.com/xaitax/WinRAR-CVE-2023-38831⭐ 12 🔗 3 · Exploit
- 🔥 https://github.com/youmulijiang/evil-winrar⭐ 10 🔗 4 · Exploit
- 🔥 https://github.com/MorDavid/CVE-2023-38831-Winrar-Exploit-Generator-POC⭐ 8 🔗 4 · Exploit
- 🔥 https://github.com/my-elliot/CVE-2023-38831-winrar-expoit-simple-Poc⭐ 11 🔗 1 · Exploit
- 🔥 https://github.com/ahmed-fa7im/CVE-2023-38831-winrar-expoit-simple-Poc⭐ 11 🔗 1 · Exploit
- 🔥 https://github.com/Malwareman007/CVE-2023-38831⭐ 9 🔗 3 · Exploit
- 🔥 https://github.com/xk-mt/WinRAR-Vulnerability-recurrence-tutorial⭐ 4 🔗 1 · Exploit