EIP-2026-119665

PRE-CVE

Winrar 5.80 - XML External Entity Injection

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-119665. PoCs published by hyp3rlinx.

AI-analyzed exploit summary This exploit demonstrates an XML External Entity (XXE) injection vulnerability in WinRAR 5.80. By crafting a malicious HTML file with an embedded XML payload, an attacker can force WinRAR to read local files (e.g., C:\Windows\system.ini) and exfiltrate their contents via an external DTD hosted on a controlled server.

Description

Winrar 5.80 - XML External Entity Injection

Exploits (1)

exploitdb WORKING POC
by hyp3rlinx · textlocalxml
https://www.exploit-db.com/exploits/47526

This exploit demonstrates an XML External Entity (XXE) injection vulnerability in WinRAR 5.80. By crafting a malicious HTML file with an embedded XML payload, an attacker can force WinRAR to read local files (e.g., C:\Windows\system.ini) and exfiltrate their contents via an external DTD hosted on a controlled server.

Classification
Working Poc 95%
Attack Type
Info Leak
Complexity
Trivial
Reliability
Reliable
Target: WinRAR 5.80
No auth needed
Prerequisites: Victim must open WinRAR's help system and drag the malicious HTML file into the help window · Attacker must host a malicious DTD file on a controlled server
devstral-2 · analyzed Feb 18, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026