Skip to content
Appaloosa Scout

Vulnerability · NVD

CVE-2004-1254

N/A

WinRAR 3.40, and possibly earlier versions, allows remote attackers to execute arbitrary code via a ZIP file containing a file with a long filename, possibly causing an integer overflow that leads to a buffer overflow.

EPSS 10.35% moderate exploit risk percentile 95.3%

Tracked apps referencing this CVE

For each app: the affected range, the fixing version, and where the tracked app stands today.

  • WinRAR Windows winget:RARLab.WinRAR
    Affected Fixed in Latest tracked 7.23.0 undetermined
Vulnerable CPE configurations (8)
Vendor Product Versions
rarlab winrar
All platforms (wildcard)
rarlab winrar
All platforms (wildcard)
rarlab winrar
All platforms (wildcard)
rarlab winrar
All platforms (wildcard)
rarlab winrar
All platforms (wildcard)
rarlab winrar
All platforms (wildcard)
rarlab winrar
All platforms (wildcard)
rarlab winrar
All platforms (wildcard)
View on NVD ↗