CVE-2025-6218CISA KEV: Actively Exploited

RARLAB WinRAR Path Traversal Vulnerability

Published Dec 9, 2025·Updated Dec 9, 2025

Description

RARLAB WinRAR contains a path traversal vulnerability allowing an attacker to execute code in the context of the current user.

Public Exploits & PoCs7 found

PoC: CVE-2025-6218-POC

RARLAB WinRAR Directory Traversal Remote Code Execution

1

PoC: CVE-2025-6218

A simple proof of concept for WinRAR Path Traversal | RCE | CVE-2025-6218

1

PoC: sigma-rules

Ce dépôt fournit des règles Sigma prêtes pour la production afin de détecter l’exploitation de la vulnérabilité CVE-2025-6218 affectant WinRAR sous Windows.

PoC: CVE-2025-6218-WinRAR-RCE-POC

Comprehensive analysis and proof-of-concept for CVE-2025-6218 - WinRAR path traversal RCE vulnerability affecting versions 7.11 and earlier

PoC: sigma-rules

Sigma detection rules for Windows threats, including WinRAR CVE-2025-6218 exploitation techniques, designed for SOC and CTI use.

PoC: CVE-2025-6218-WinRAR-Directory-Traversal-RCE

CVE-2025-6218 is a directory traversal vulnerability in WinRAR that allows an attacker to place files outside the intended extraction directory when a user extracts a specially crafted

PoC: CVE-2025-6218-POC

Proof of Concept for CVE-2025-6218, demonstrating the exploitation of a vulnerability in WinRAR versions 7.11 and under, involving improper handling of archive extraction paths.

References

View on NVD Search GitHub Search Google

Get alerted for CVEs like this

Register your stack and get notified within minutes when a matching CVE drops.

Start monitoring free