紧急警报!WinRAR漏洞要你命,速速更新!
06/25/2025, 01:41 PM UTC
WinRAR爆高危漏洞!攻击者可执行恶意代码(紧急修复版已发布)WinRAR exploit enables attackers to run malicious code on your PC — critical vulnerability patched in latest beta update
➀ WinRAR曝出关键性目录穿越漏洞(CVE-2025-6218),攻击者可通过构造恶意压缩包劫持文件路径并执行任意代码;
➁ 受影响的7.11及更早版本CVSS评分达7.8/10,可导致系统文件篡改、敏感数据泄露等高风险;
➂ RARLAB已发布7.12 Beta 1修复安全漏洞,Windows用户需手动下载更新以防攻击。
➀ A critical directory traversal vulnerability (CVE-2025-6218) in WinRAR allows attackers to hijack directory paths and execute malicious code via malicious archives;
➁ Impacted versions (WinRAR 7.11 and earlier) pose high confidentiality risks, scoring 7.8/10 on CVSS;