WinRAR Self Extracting Archive Flaw
-
Not surprisingly, self extracting zip/rar archives can be dangerous:
(well, duh)
The popular WinRAR compression software can be abused to produce self-extracting archives that execute smuggled-in JavaScript code when decompressed.
...
It's not quite the end of the world, though: only HTML and JavaScript hidden within the archive is parsed and executed, rather than arbitrary machine code. And being a self-extracting archive, it's basically a .exe file you're asking people to download and trust to run, anyway.
http://www.theregister.co.uk/2015/09/30/500m_winrar_users_open_to_remote_code_execution_zero_day/