First published: Wed Mar 23 2022(Updated: )
wpsupdater.exe in Kingsoft WPS Office through 11.2.0.10382 allows remote code execution by modifying HKEY_CURRENT_USER in the registry.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
WPS Office | <=11.2.0.10382 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-24934 is a vulnerability in Kingsoft WPS Office that allows remote code execution by modifying the registry.
CVE-2022-24934 has a severity rating of 9.8, which is classified as critical.
Kingsoft WPS Office versions up to and including 11.2.0.10382 are affected by CVE-2022-24934.
CVE-2022-24934 can be exploited by modifying HKEY_CURRENT_USER in the registry.
At the moment, there is no information available about a patch or fix for CVE-2022-24934. It is recommended to follow the vendor's security advisories for updates.