WPS kayıtları
wps üreticisine ait 6 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 3
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer1
- CWE-20 Improper Input Validation1
- CWE-310 Cryptographic Issues1
- CWE-416 Use After Free1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
6 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
45Planlayın | CVE-2022-24934Kavram kanıtı | wpsupdater.exe in Kingsoft WPS Office through 11.2.0.10382 allows remote code execution by modifying HKEY_CURRENT_USER in the registry.wps · wps office | Kritik9,8 | — | %20,5 | 23 Mar 2022 |
41Planlayın | CVE-2005-2290İstismar yok | wps_shop.cgi in WPS Web Portal System 0.7.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the (1) art anwps · web portal system | Kritik10,0 | — | %3,2 | 18 Tem 2005 |
32İzleyin | CVE-2014-2271İstismar yok | cn.wps.moffice.common.beans.print.CloudPrintWebView in Kingsoft Office 5.3.1, as used in Huawei P2 devices before V100R001C00B043, falls bacwps · wps office · CWE-20 | Yüksek8,1 | — | %1,5 | 14 Oca 2020 |
31İzleyin | CVE-2021-40399İstismar yok | An exploitable use-after-free vulnerability exists in WPS Spreadsheets ( ET ) as part of WPS Office, version 11.2.0.10351.wps · wps office · CWE-416 | Yüksek7,8 | — | %1,3 | 12 May 2022 |
26İzleyin | CVE-2018-6390İstismar yok | The WStr::assign function in kso.dll in Kingsoft WPS Office 10.1.0.7106 and 10.2.0.5978 does not validate the size of the source memory blocwps · wps office · CWE-119 | Orta6,5 | — | %1,1 | 29 Oca 2018 |
21İzleyin | CVE-2014-6692İstismar yok | The Kingsoft Clip (Office Tool) (aka cn.wps.clip) application 1.5.1 for Android does not verify X.509 certificates from SSL servers, which awps · kingsoft clip \(office tool\) · CWE-310 | Orta5,4 | — | %0,3 | 23 Eyl 2014 |
- CVE-2022-2493445Planlayın
wpsupdater.exe in Kingsoft WPS Office through 11.2.0.10382 allows remote code execution by modifying HKEY_CURRENT_USER in the registry.
KritikCVSS 9,8Kavram kanıtıEPSS %20wps · wps office23 Mar 2022
- CVE-2005-229041Planlayın
wps_shop.cgi in WPS Web Portal System 0.7.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the (1) art an
KritikCVSS 10,0İstismar yokEPSS %3wps · web portal system18 Tem 2005
- CVE-2014-227132İzleyin
cn.wps.moffice.common.beans.print.CloudPrintWebView in Kingsoft Office 5.3.1, as used in Huawei P2 devices before V100R001C00B043, falls bac
YüksekCVSS 8,1İstismar yokEPSS %2wps · wps office14 Oca 2020
- CVE-2021-4039931İzleyin
An exploitable use-after-free vulnerability exists in WPS Spreadsheets ( ET ) as part of WPS Office, version 11.2.0.10351.
YüksekCVSS 7,8İstismar yokEPSS %1wps · wps office12 May 2022
- CVE-2018-639026İzleyin
The WStr::assign function in kso.dll in Kingsoft WPS Office 10.1.0.7106 and 10.2.0.5978 does not validate the size of the source memory bloc
OrtaCVSS 6,5İstismar yokEPSS %1wps · wps office29 Oca 2018
- CVE-2014-669221İzleyin
The Kingsoft Clip (Office Tool) (aka cn.wps.clip) application 1.5.1 for Android does not verify X.509 certificates from SSL servers, which a
OrtaCVSS 5,4İstismar yokEPSS %0wps · kingsoft clip \(office tool\)23 Eyl 2014