PassFab RAR Password Recovery Buffer Overflow Vulnerability Allowing Arbitrary Code Execution

Vulnerability

A buffer overflow vulnerability has been identified in PassFab RAR Password Recovery version 9.3.2. This vulnerability involves a structured exception handler (SEH) buffer overflow, which local attackers can exploit to execute arbitrary code. The issue arises when a malicious payload is crafted with a buffer overflow, a non-sequential exception handler (NSEH) jump, and shellcode. Attackers can paste this payload into the 'Licensed E-mail and Registration Code' field during the registration process to trigger code execution.

Impact

Exploitation of this vulnerability allows for arbitrary code execution on the affected system.

Reproduction

To reproduce this vulnerability, first create a payload that includes a buffer overflow, an NSEH jump, and shellcode. This can be done using a Python script that writes the payload to a file. After creating the payload, open PassFab RAR Password Recovery and navigate to the registration window. Paste the payload from the file into the 'Licensed E-mail and Registration Code' field and click 'Register'. This will execute the injected code, in this case, opening the Windows calculator application.

Added: Mar 26, 2026, 2:35 PM
Updated: Mar 26, 2026, 2:35 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
10.0
exploitability
4.0
remediation
0.0
relevance
4.7
threat
6.4
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.