CVE-2015-5663: RARLAB WinRAR
High severity, CVSS 7.4. EPSS: 0.9% chance of exploitation in the next 30 days.
The file-execution functionality in WinRAR before 5.30 beta 5 allows local users to gain privileges via a Trojan horse file with a name similar to an extensionless filename that was selected by the user.
Affected products
- RARLAB WinRAR: up to and including 5.30
Published 2015-12-30. Last modified 2026-06-17.