boxscore/security
CVE · referencelatest edition

Reference page — cumulative record through Wednesday, August 19, 2026 UTC. Reference pages update as the archive grows; only dated daily editions are immutable pages of record.

CVE-2018-20250HIGH
Check Point Software Technologies Ltd. WinRAR — RARLAB WinRAR
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   L   L   N   R  U  H  H  H    7.8   .9627   99.9   YES
AFFECTED
  Product  Versions                                 Fixed
  WinRAR   All versions prior and including 5.61 –  —
TIMELINE
  Dec 19  Reserved by checkpoint
  Feb 15  Added to CISA KEV, remediation due 2022-08-15
  Feb 15  Published (CNA: checkpoint)
  Aug 12  EXPLOIT PUBLISHED — CVE-2018-20250 (Check Point Software Technologies Ltd. WinRAR). Public exploit reference added.
CWE-22, CWE-36 · CNA: checkpoint · CVSS v3.1 · 9 references · NVD status: Analyzed · KEV due August 15, 2022

Description

In WinRAR versions prior to and including 5.61, There is path traversal vulnerability when crafting the filename field of the ACE format (in UNACEV2.dll). When the filename field is manipulated with specific patterns, the destination (extraction) folder is ignored, thus treating the filename as an absolute path.

Lifecycle

Complete event history — 4 events, chronological
DateEventDetail
December 19, 2018ReservedReserved by checkpoint
February 15, 2022KEV ADDEDAdded to CISA KEV, remediation due 2022-08-15
February 15, 2022PublishedPublished (CNA: checkpoint)
August 12, 2026EXPLOIT PUBLISHEDEXPLOIT PUBLISHED — CVE-2018-20250 (Check Point Software Technologies Ltd. WinRAR). Public exploit reference added.

Affected

Affected products and packages — 1 row
VendorProduct / PackageEcosystemVersion introducedFixed
Check Point Software Technologies Ltd.WinRARAll versions prior and including 5.61

Weaknesses

CWE-22 · CWE-36

References (9)

Related

Authoritative record: CVE-2018-20250 at cve.org

Vendors: check point

Weaknesses: CWE-22 · CWE-36

About this page

This is a reference page, not a dated page of record. It assembles the complete lifecycle of CVE-2018-20250 from the CVE Program record, NVD enrichment, the CISA KEV catalog, EPSS, and OSV advisories. The box score's numbers (CVSS, EPSS, KEV status) are current as of Wednesday, August 19, 2026 UTC and are re-derived as the archive grows; only dated daily editions are immutable pages of record. The authoritative source for this identifier is cve.org.