Skip to content
Noroxi

Kingsoft records

26 published records for vendor kingsoft.

All records

26 records
  • CVE-2024-7262
    68This week

    Arbitrary Code Execution in WPS Office

    CriticalCVSS 9.3KEVWeaponizedEPSS 3%

    kingsoft · wps officeAug 15, 2024

  • Stack-based buffer overflow in wpsio.dll in Kingsoft WPS Office 2012 possibly 8.1.0.3238 allows remote attackers to execute arbitrary code v

    CriticalCVSS 10.0Proof of conceptEPSS 15%

    kingsoft · office 2012Mar 24, 2014

  • Heap-based buffer overflow in the KUpdateObj2 Class ActiveX control in UpdateOcx2.dll in Beijing KingSoft Antivirus Online Update Module 200

    CriticalCVSS 10.0Proof of conceptEPSS 15%

    kingsoft · antivirus online update moduleMar 12, 2008

  • Stack-based buffer overflow in Kingsoft Writer 2012 8.1.0.3030, as used in Kingsoft Office 2013 before 9.1.0.4256, allows remote attackers t

    CriticalCVSS 9.3Proof of conceptEPSS 10%

    kingsoft · office 2012Sep 10, 2013

  • CVE-2013-0710
    38Monitor

    Buffer overflow in Kingsoft Writer 2007 and 2010 before 2724 allows remote attackers to execute arbitrary code via a crafted RTF document.

    CriticalCVSS 9.3No exploitEPSS 4%

    kingsoft · writer 2007Mar 5, 2013

  • CVE-2013-0723
    38Monitor

    Multiple heap-based buffer overflows in etxrw.dll in Kingsoft Spreadsheets 2012 8.1.0.3030 allow remote attackers to cause a denial of servi

    CriticalCVSS 9.3No exploitEPSS 4%

    kingsoft · spreadsheets 2012Jul 29, 2013

  • CVE-2024-7263
    37Monitor

    Arbitrary Code Execution in WPS Office

    CriticalCVSS 9.3No exploitEPSS 0%

    kingsoft · wps officeAug 15, 2024

  • An uninitialized pointer use vulnerability exists in the functionality of WPS Office 11.2.0.11537 that handles Data elements in an Excel fil

    HighCVSS 7.8No exploitEPSS 2%

    kingsoft · wps officeNov 27, 2023

  • OS command injection vulnerability exists in WPS Office version 10.8.0.6186.

    HighCVSS 8.1No exploitEPSS 1%

    kingsoft · wps officeJun 13, 2023

  • GdiDrawHoriLineIAlt in Kingsoft WPS Office before 11.2.0.9403 allows remote heap corruption via a crafted PLTE chunk in PNG data within a Wo

    HighCVSS 7.8No exploitEPSS 2%

    kingsoft · wps officeSep 13, 2020

  • The installer of WPS Office Version 10.8.0.5745 insecurely load shcore.dll, allowing an attacker to execute arbitrary code with the privileg

    HighCVSS 7.8No exploitEPSS 1%

    kingsoft · wps officeMar 17, 2022

  • The installer of WPS Office Version 10.8.0.6186 insecurely load VERSION.DLL (or some other DLLs), allowing an attacker to execute arbitrary

    HighCVSS 7.8No exploitEPSS 1%

    kingsoft · wps officeMar 17, 2022

  • The WPS Office (aka cn.wps.moffice_eng) application before 17.0.0 for Android fails to properly sanitize file names before processing them t

    HighCVSS 7.8Proof of conceptEPSS 1%

    May 14, 2024

  • The kernel mode driver kwatch3 of KINGSOFT Internet Security 9 Plus Version 2010.06.23.247 fails to properly handle crafted inputs, leading

    HighCVSS 7.8Proof of conceptEPSS 1%

    kingsoft · internet security 9 plusMar 17, 2022

  • The installer of WPS Office for Windows versions prior to v11.2.0.10258 fails to configure properly the ACL for the directory where the serv

    HighCVSS 7.8Proof of conceptEPSS 1%

    kingsoft · wps officeMar 9, 2022

  • WPS Presentation 11.8.0.5745 insecurely load d3dx9_41.dll when opening .pps files('current directory type' DLL loading).

    HighCVSS 7.8No exploitEPSS 1%

    kingsoft · wps presentationMar 17, 2022

  • CVE-2010-3396
    28Monitor

    Buffer overflow in kavfm.sys in Kingsoft Antivirus 2010.04.26.648 and earlier allows local users to execute arbitrary code via a long argume

    HighCVSS 7.2Proof of conceptEPSS 1%

    kingsoft · kingsoft antivirusSep 15, 2010

  • CVE-2010-2031
    28Monitor

    KAVSafe.sys 2010.4.14.609 and earlier, as used in Kingsoft Webshield 3.5.1.2 and earlier, allows local users to overwrite arbitrary kernel m

    HighCVSS 7.2Proof of conceptEPSS 1%

    kingsoft · webshieldMay 24, 2010

  • CVE-2013-5999
    23Monitor

    Kingsoft KDrive Personal before 1.21.0.1880 on Windows does not verify X.509 certificates from SSL servers, which allows man-in-the-middle a

    MediumCVSS 5.8No exploitEPSS 1%

    kingsoft · kdriveNov 22, 2013

  • CVE-2018-7546
    22Monitor

    wpsmain.dll in Kingsoft WPS Office 2016 and Jinshan PDF 10.1.0.6621 allows remote attackers to cause a denial of service via a crafted pdf f

    MediumCVSS 5.5No exploitEPSS 1%

    kingsoft · jinshan pdfJul 18, 2018

  • CVE-2018-9151
    22Monitor

    A NULL pointer dereference bug in the function ObReferenceObjectByHandle in the Kingsoft Internet Security 9+ kernel driver KWatch3.sys allo

    MediumCVSS 5.5No exploitEPSS 0%

    kingsoft · internet security 9 plusMar 30, 2018

  • An issue in wps office before v.19302 allows a local attacker to obtain sensitive information via a crafted file.

    MediumCVSS 5.5No exploitEPSS 0%

    kingsoft · wps officeMay 14, 2025

  • CVE-2004-1494
    21Monitor

    Buffer overflow in the Screen Fetch option in XDICT 2002 through 2005 allows remote attackers to cause a denial of service ( CPU consumption

    MediumCVSS 5.0No exploitEPSS 4%

    kingsoft · xdictDec 31, 2004

  • CVE-2010-5164
    21Monitor

    Race condition in KingSoft Personal Firewall 9 Plus 2009.05.07.70 on Windows XP allows local users to bypass kernel-mode hook handlers, and

    MediumCVSS 5.3No exploitEPSS 0%

    kingsoft · personal firewall 9Aug 25, 2012

  • KisKrnl.sys 2011.1.13.89 and earlier in Kingsoft AntiVirus 2011 SP5.2 allows local users to cause a denial of service (crash) via a crafted

    LowCVSS 2.1Proof of conceptEPSS 1%

    kingsoft · kingsoft antivirusJan 20, 2011