Rarlab WinRAR
cpe:2.3:a:rarlab:winrar:*:*:*:*:*:*:*
- 7.11
A cross-site scripting (XSS) vulnerability has been identified in Rarlab WinRAR version 7.11. This issue arises in the 'generate report' functionality, where archived file names are included in the HTML report without proper validation. As a result, attackers can inject potentially malicious HTML tags, leading to the disclosure of user information such as the computer username, report directory, and IP address. Exploitation of this vulnerability requires user interaction, as the report must be opened after generation.
Exploitation of this vulnerability allows for cross-site scripting, where injected HTML can be executed, potentially leading to the disclosure of sensitive user information.
To reproduce this vulnerability, use the 'generate report' feature in WinRAR 7.11. After the report is generated, open it to trigger the cross-site scripting vulnerability. The report will contain injected HTML that can execute scripts or manipulate the document structure.
Users are advised to update to WinRAR version 7.12 beta 1, which addresses this vulnerability by sanitizing file name characters in the 'generate report' command to prevent HTML injection.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.