Reference page — cumulative record through Wednesday, August 19, 2026 UTC. Reference pages update as the archive grows; only dated daily editions are immutable pages of record.
Check Point Software Technologies Ltd. WinRAR — RARLAB WinRAR
AV AC PR UI S C I A CVSS EPSS %ile KEV
L L N R U H H H 7.8 .9627 99.9 YES
AFFECTED
Product Versions Fixed
WinRAR All versions prior and including 5.61 – —
TIMELINE
Dec 19 Reserved by checkpoint
Feb 15 Added to CISA KEV, remediation due 2022-08-15
Feb 15 Published (CNA: checkpoint)
Aug 12 EXPLOIT PUBLISHED — CVE-2018-20250 (Check Point Software Technologies Ltd. WinRAR). Public exploit reference added.
Description
In WinRAR versions prior to and including 5.61, There is path traversal vulnerability when crafting the filename field of the ACE format (in UNACEV2.dll). When the filename field is manipulated with specific patterns, the destination (extraction) folder is ignored, thus treating the filename as an absolute path.
Lifecycle
Complete event history — 4 events, chronological
| Date | Event | Detail |
| December 19, 2018 | Reserved | Reserved by checkpoint |
| February 15, 2022 | KEV ADDED | Added to CISA KEV, remediation due 2022-08-15 |
| February 15, 2022 | Published | Published (CNA: checkpoint) |
| August 12, 2026 | EXPLOIT PUBLISHED | EXPLOIT PUBLISHED — CVE-2018-20250 (Check Point Software Technologies Ltd. WinRAR). Public exploit reference added. |
References (9)
- http://packetstormsecurity.com/files/152618/RARLAB-WinRAR-ACE-Format-Input-Validation-Remote-Code-Execution.html [Exploit, Third Party Advisory, VDB Entry]
- http://www.rapid7.com/db/modules/exploit/windows/fileformat/winrar_ace [Third Party Advisory]
- http://www.securityfocus.com/bid/106948 [Broken Link, Third Party Advisory, VDB Entry]
- https://github.com/blau72/CVE-2018-20250-WinRAR-ACE [Exploit, Third Party Advisory]
- https://research.checkpoint.com/extracting-code-execution-from-winrar/ [Exploit, Press/Media Coverage, Third Party Advisory]
- https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2018-20250 [US Government Resource]
- https://www.exploit-db.com/exploits/46552/ [Exploit, Third Party Advisory, VDB Entry]
- https://www.exploit-db.com/exploits/46756/ [Exploit, Third Party Advisory, VDB Entry]
- https://www.win-rar.com/whatsnew.html [Release Notes]
About this page
This is a reference page, not a dated page of record. It assembles the complete lifecycle of CVE-2018-20250 from the CVE Program record, NVD enrichment, the CISA KEV catalog, EPSS, and OSV advisories. The box score's numbers (CVSS, EPSS, KEV status) are current as of Wednesday, August 19, 2026 UTC and are re-derived as the archive grows; only dated daily editions are immutable pages of record. The authoritative source for this identifier is cve.org.