CVE-2025-50328
Last modified
CVE-2025-50328 is a high-severity vulnerability rated 7.3/10 on the CVSS scale. A vulnerability in B1 Free Archiver v1.5.86 allows files extracted from downloaded archives to bypass Windows Mark of the Web (MotW) protections. When an archive is downloaded from the internet and extracted using B1 Free Archiver, the software fails to propagate the 'Zone.Identifier' alternate data stream to the extracted files. EPSS estimates a 0.33% chance of exploitation in the next 30 days.
Description
A vulnerability in B1 Free Archiver v1.5.86 allows files extracted from downloaded archives to bypass Windows Mark of the Web (MotW) protections. When an archive is downloaded from the internet and extracted using B1 Free Archiver, the software fails to propagate the 'Zone.Identifier' alternate data stream to the extracted files. As a result, these files can be executed without triggering Windows Defender SmartScreen warnings or security prompts, enabling untrusted code execution without standard security restrictions.
Metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
Weakness Enumeration
Affected Software
Source: CNA advisory (CVE.org). NVD analysis pending.
| Vendor | Product | Versions |
|---|---|---|
| — | — | n/a |
References
Timeline
- Published
- Last Modified
- Status
- Awaiting Analysis
Frequently Asked Questions
What is CVE-2025-50328?
How severe is CVE-2025-50328?
How do I fix CVE-2025-50328?
How Strix Helps
- Same Subject, Wrong User: A Cross-Issuer Account Takeover in n8nStrix found an identity-binding bug in n8n's token-exchange flow enabling account takeover.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2025
- CVE-2025-5030A vulnerability was found in Ackites KillWxapkg up to 2.4.1.…8.1
- CVE-2025-5031A vulnerability was found in Ackites KillWxapkg up to 2.4.1.…3.1
- CVE-2025-5032A vulnerability classified as critical has been found in Cam…9.8
- CVE-2025-50324An issue in Milos Paripovic OneCommander v.3.96.0.0 allows a…8.8
- CVE-2025-50325BandiZip v.7.37 is affected by a Authentication Bypass Vulne…5.4
- CVE-2025-50327An issue in Franco Corbelli ZPAQFRANZ v.61.3 and before allo…8.8
- CVE-2025-50329An issue in ConeXware, Inc Power Archiver v.22.00.11 and bef…9.8
- CVE-2025-5033A vulnerability classified as problematic was found in XiaoB…5.3
- CVE-2025-50330An issue in ZipGenius Team ZipGenius v.6.3.2.3116 and before…8.8
- CVE-2025-50334An issue in Technitium DNS Server v.13.5 allows a remote att…7.5
- CVE-2025-5034The wp-file-download WordPress plugin before 6.2.6 does not …7.1
- CVE-2025-50340An Insecure Direct Object Reference (IDOR) vulnerability was…4.3
Are you affected by CVE-2025-50328?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
