Записи WPS
6 опубликованных записей вендора wps.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 3
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer1
- CWE-20 Improper Input Validation1
- CWE-310 Cryptographic Issues1
- CWE-416 Use After Free1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
6 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
45В плане | CVE-2022-24934Proof of concept | wpsupdater.exe in Kingsoft WPS Office through 11.2.0.10382 allows remote code execution by modifying HKEY_CURRENT_USER in the registry.wps · wps office | Критическая9,8 | — | 20,5 % | 23 мар. 2022 г. |
41В плане | CVE-2005-2290Эксплойта нет | wps_shop.cgi in WPS Web Portal System 0.7.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the (1) art anwps · web portal system | Критическая10,0 | — | 3,2 % | 18 июл. 2005 г. |
32Наблюдать | CVE-2014-2271Эксплойта нет | cn.wps.moffice.common.beans.print.CloudPrintWebView in Kingsoft Office 5.3.1, as used in Huawei P2 devices before V100R001C00B043, falls bacwps · wps office · CWE-20 | Высокая8,1 | — | 1,5 % | 14 янв. 2020 г. |
31Наблюдать | CVE-2021-40399Эксплойта нет | An exploitable use-after-free vulnerability exists in WPS Spreadsheets ( ET ) as part of WPS Office, version 11.2.0.10351.wps · wps office · CWE-416 | Высокая7,8 | — | 1,3 % | 12 мая 2022 г. |
26Наблюдать | CVE-2018-6390Эксплойта нет | The WStr::assign function in kso.dll in Kingsoft WPS Office 10.1.0.7106 and 10.2.0.5978 does not validate the size of the source memory blocwps · wps office · CWE-119 | Средняя6,5 | — | 1,1 % | 29 янв. 2018 г. |
21Наблюдать | CVE-2014-6692Эксплойта нет | The Kingsoft Clip (Office Tool) (aka cn.wps.clip) application 1.5.1 for Android does not verify X.509 certificates from SSL servers, which awps · kingsoft clip \(office tool\) · CWE-310 | Средняя5,4 | — | 0,3 % | 23 сент. 2014 г. |
- CVE-2022-2493445В плане
wpsupdater.exe in Kingsoft WPS Office through 11.2.0.10382 allows remote code execution by modifying HKEY_CURRENT_USER in the registry.
КритическаяCVSS 9,8Proof of conceptEPSS 20 %wps · wps office23 мар. 2022 г.
- CVE-2005-229041В плане
wps_shop.cgi in WPS Web Portal System 0.7.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the (1) art an
КритическаяCVSS 10,0Эксплойта нетEPSS 3 %wps · web portal system18 июл. 2005 г.
- CVE-2014-227132Наблюдать
cn.wps.moffice.common.beans.print.CloudPrintWebView in Kingsoft Office 5.3.1, as used in Huawei P2 devices before V100R001C00B043, falls bac
ВысокаяCVSS 8,1Эксплойта нетEPSS 2 %wps · wps office14 янв. 2020 г.
- CVE-2021-4039931Наблюдать
An exploitable use-after-free vulnerability exists in WPS Spreadsheets ( ET ) as part of WPS Office, version 11.2.0.10351.
ВысокаяCVSS 7,8Эксплойта нетEPSS 1 %wps · wps office12 мая 2022 г.
- CVE-2018-639026Наблюдать
The WStr::assign function in kso.dll in Kingsoft WPS Office 10.1.0.7106 and 10.2.0.5978 does not validate the size of the source memory bloc
СредняяCVSS 6,5Эксплойта нетEPSS 1 %wps · wps office29 янв. 2018 г.
- CVE-2014-669221Наблюдать
The Kingsoft Clip (Office Tool) (aka cn.wps.clip) application 1.5.1 for Android does not verify X.509 certificates from SSL servers, which a
СредняяCVSS 5,4Эксплойта нетEPSS 0 %wps · kingsoft clip \(office tool\)23 сент. 2014 г.