CVE-2024-8811: WinZip Mark-of-the-Web Bypass Vulnerability
This vulnerability allows remote attackers to bypass the Mark-of-the-Web protection mechanism on affected installations of WinZip. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the handling of archive files. When opening an archive that bears the Mark-of-the-Web, WinZip removes the Mark-of-the-Web from the archive file. Following extraction, the extracted files also lack the Mark-of-the-Web. An attacker can leverage this vulnerability to execute arbitrary code in the context of the current user.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-8811?
CVE-2024-8811 is considered a medium-severity vulnerability due to its reliance on user interaction for exploitation.
How do I fix CVE-2024-8811?
To mitigate CVE-2024-8811, update WinZip to version 76.8 or later as this version addresses the vulnerability.
What type of attacks can exploit CVE-2024-8811?
CVE-2024-8811 can be exploited through remote attacks where users visit a malicious page or open a compromised file.
Who is affected by CVE-2024-8811?
CVE-2024-8811 affects installations of WinZip prior to version 76.8.
Is user interaction required for CVE-2024-8811 exploitation?
Yes, user interaction is necessary to exploit CVE-2024-8811, as users must engage with a malicious source.