Vulnerabilities > CVE-2005-4620 - Buffer Overflow vulnerability in RARLAB WinRAR Command Line Processing
Attack vector
LOCAL Attack complexity
LOW Privileges required
NONE Confidentiality impact
PARTIAL Integrity impact
PARTIAL Availability impact
PARTIAL Summary
Buffer overflow in WinRAR 3.50 and earlier allows local users to execute arbitrary code via a long command-line argument. NOTE: because this program executes with the privileges of the invoking user, and because remote programs do not normally have the ability to specify a command-line argument for this program, there may not be a typical attack vector for the issue that crosses privilege boundaries. Therefore this may not be a vulnerability.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 12 |
Exploit-Db
description WinRAR 3.30 Long Filename Buffer Overflow Exploit (more targets) (2). CVE-2005-4620. Local exploit for windows platform id EDB-ID:1404 last seen 2016-01-31 modified 2006-01-04 published 2006-01-04 reporter c0d3r source https://www.exploit-db.com/download/1404/ title WinRAR 3.30 Long Filename Buffer Overflow Exploit more targets 2 description WinRAR 3.30 Long Filename Buffer Overflow Exploit. CVE-2005-4620. Local exploit for windows platform id EDB-ID:1403 last seen 2016-01-31 modified 2006-01-04 published 2006-01-04 reporter K4P0 source https://www.exploit-db.com/download/1403/ title WinRAR 3.30 Long Filename Buffer Overflow Exploit