Vulnerabilities > CVE-2022-24934 - Unspecified vulnerability in WPS Office 10.1.0.7106/10.2.0.5978/5.3.1

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
low complexity
wps

Summary

wpsupdater.exe in Kingsoft WPS Office through 11.2.0.10382 allows remote code execution by modifying HKEY_CURRENT_USER in the registry.

Vulnerable Configurations

Part Description Count
Application
Wps
3