CVE-2025-0411HIGH 7.0CISA KEVEPSS p99.2%

CVE-2025-04117-Zip Mark of the Web Bypass Vulnerability

7-Zip / 7-Zip

Description

7-Zip contains a protection mechanism failure vulnerability that allows remote attackers to bypass the Mark-of-the-Web security feature to execute arbitrary code in the context of the current user.

Scoring

CVSS 3.17.0 (HIGH)
VectorCVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H
EPSS65.89% probability of exploitation · percentile 99.2% · 2026-06-19T12:03:05Z
Published2025-01-25
Last modified2025-10-27

CISA KEV entry

Added to KEV: 2025-02-06

Underlying weaknesses· 1

CWE-693

References

  1. https://www.zerodayinitiative.com/advisories/ZDI-25-045/
  2. http://www.openwall.com/lists/oss-security/2025/01/24/6
  3. https://security.netapp.com/advisory/ntap-20250207-0005/
  4. https://www.vicarius.io/vsociety/posts/cve-2025-0411-7-zip-mitigation-vulnerability
  5. https://www.vicarius.io/vsociety/posts/cve-2025-0411-detection-7-zip-vulnerability
  6. https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2025-0411

1

TypeTargetConfidenceTier
WeaknessProtection Mechanism Failurecwe-6930%live

(incoming)1

TypeTargetConfidenceTier
KEVEntry7-Zip Mark of the Web Bypass Vulnerabilitykev-cve-2025-04110%live

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

CVE
CVE-2025-1240
CVE
CVE-2026-48111
CVE
CVE-2026-48103
CVE
CVE-2026-48092
CVE
CVE-2026-48101
CVE
CVE-2026-48104
Sourced from NVD + CISA KEV + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.