CVE-2025-50329
9.8ConeXware · PowerArchiver
A vulnerability in PowerArchiver allows an unauthenticated remote attacker to escalate privileges and execute arbitrary code via the powerarc.exe executable.
Executive summary
A critical remote code execution vulnerability in PowerArchiver requires immediate attention due to its potential for full system compromise.
Vulnerability
This vulnerability involves an issue within the powerarc.exe component that permits an unauthenticated remote attacker to achieve privilege escalation and arbitrary code execution. The attack vector is entirely network-based and requires no user interaction or prior authentication.
Business impact
The identified vulnerability carries a CVSS score of 9.8, indicating a critical risk to business operations. Successful exploitation allows an attacker to gain complete control over the affected host, potentially leading to unauthorized data exfiltration, the deployment of ransomware, or the total loss of system integrity.
Remediation
Immediate Action: Organizations should restrict access to the affected software and monitor the vendor website for the release of a security patch addressing this flaw.
Proactive Monitoring: Security teams should monitor network traffic for suspicious activity involving the powerarc.exe process and review system logs for unauthorized privilege escalation events.
Compensating Controls: Deploy network-level protections or endpoint detection and response tools to identify and block exploit attempts targeting the application's executable files.
Exploitation status
Public Exploit Available: Yes — a published Proof-of-Concept exists via the GitHub reference in the provided documentation.
Analyst recommendation
Given the critical CVSS severity and the availability of a public proof-of-concept, this vulnerability poses a significant threat to internal infrastructure. Administrators must prioritize identifying all instances of PowerArchiver within their environment and apply vendor-supplied updates as soon as they become available to prevent potential exploitation.