最新文章
Mar 19, 2026 | Industry News
CVE-2025-8088 Technical Analysis: WinRAR Arbitrary File Write Through ADS
CVE-2025-8088 is a path traversal vulnerability in WinRAR affecting versions prior to 7.13. Exploiting this vulnerability enables a specially crafted archive to bypass filename and path validation during archive extraction and cause attacker-controlled content to be written to specific locations on an NTFS volume. Under certain conditions, this writing capability can be leveraged for remote code execution.