Vulnerability index

Browse CVEs

23 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Wps Office MEDIUM 5.5
CVE-2024-57096

An issue in wps office before v.19302 allows a local attacker to obtain sensitive information via a crafted file.

Mitigation only
Fix from $1,600 2025-05-14
Wps Office HIGH 7.8
CVE-2024-7262 KEV

Improper path validation in promecefpluginhost.exe in Kingsoft WPS Office version ranging from 12.2.0.13110 to 12.2.0.16412 (exclusive) on Windows al…

Fix: 12.2.0.16412+
Fix from $1,950 2024-08-15
Wps Office HIGH 7.8
CVE-2024-7263

Improper path validation in promecefpluginhost.exe in Kingsoft WPS Office version ranging from 12.2.0.13110 to 12.2.0.17115 (exclusive) on Windows al…

Fix: 12.2.0.17153+
Fix from $1,950 2024-08-15
Wps Office HIGH 7.8
CVE-2023-31275

An uninitialized pointer use vulnerability exists in the functionality of WPS Office 11.2.0.11537 that handles Data elements in an Excel file. A spec…

Mitigation only
Fix from $1,950 2023-11-27
Wps Office HIGH 8.1
CVE-2023-32548

OS command injection vulnerability exists in WPS Office version 10.8.0.6186. If a remote attacker who can conduct a man-in-the-middle attack connects…

Mitigation only
Fix from $1,950 2023-06-13
Internet Security 9 Plus HIGH 7.8
CVE-2022-25949

The kernel mode driver kwatch3 of KINGSOFT Internet Security 9 Plus Version 2010.06.23.247 fails to properly handle crafted inputs, leading to stack-…

Mitigation only
Fix from $1,950 2022-03-17
Wps Office HIGH 7.8
CVE-2022-25969

The installer of WPS Office Version 10.8.0.6186 insecurely load VERSION.DLL (or some other DLLs), allowing an attacker to execute arbitrary code with…

Mitigation only
Fix from $1,950 2022-03-17
Wps Office HIGH 7.8
CVE-2022-26081

The installer of WPS Office Version 10.8.0.5745 insecurely load shcore.dll, allowing an attacker to execute arbitrary code with the privilege of the …

Mitigation only
Fix from $1,950 2022-03-17
Wps Presentation HIGH 7.8
CVE-2022-26511

WPS Presentation 11.8.0.5745 insecurely load d3dx9_41.dll when opening .pps files('current directory type' DLL loading).

Mitigation only
Fix from $1,950 2022-03-17
Wps Office HIGH 7.8
CVE-2022-25943

The installer of WPS Office for Windows versions prior to v11.2.0.10258 fails to configure properly the ACL for the directory where the service progr…

Fix: 11.2.0.10258+
Fix from $1,950 2022-03-09
Wps Office HIGH 7.8
CVE-2020-25291

GdiDrawHoriLineIAlt in Kingsoft WPS Office before 11.2.0.9403 allows remote heap corruption via a crafted PLTE chunk in PNG data within a Word docume…

Fix: 11.2.0.9403+
Fix from $1,950 2020-09-13
Jinshan Pdf MEDIUM 5.5
CVE-2018-7546

wpsmain.dll in Kingsoft WPS Office 2016 and Jinshan PDF 10.1.0.6621 allows remote attackers to cause a denial of service via a crafted pdf file.

Mitigation only
Fix from $1,600 2018-07-18
Internet Security 9 Plus MEDIUM 5.5
CVE-2018-9151

A NULL pointer dereference bug in the function ObReferenceObjectByHandle in the Kingsoft Internet Security 9+ kernel driver KWatch3.sys allows local …

Mitigation only
Fix from $1,600 2018-03-30
Office 2012 HIGH 10.0
CVE-2012-4886EPSS 15%

Stack-based buffer overflow in wpsio.dll in Kingsoft WPS Office 2012 possibly 8.1.0.3238 allows remote attackers to execute arbitrary code via a long…

Mitigation only
Fix from $1,950 2014-03-24
Kdrive MEDIUM 5.8
CVE-2013-5999

Kingsoft KDrive Personal before 1.21.0.1880 on Windows does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers …

Fix: after 1.21.0.1878
Fix from $1,600 2013-11-22
Office 2012 HIGH 9.3
CVE-2013-3934EPSS 10%

Stack-based buffer overflow in Kingsoft Writer 2012 8.1.0.3030, as used in Kingsoft Office 2013 before 9.1.0.4256, allows remote attackers to execute…

Mitigation only
Fix from $1,950 2013-09-10
Spreadsheets 2012 HIGH 9.3
CVE-2013-0723

Multiple heap-based buffer overflows in etxrw.dll in Kingsoft Spreadsheets 2012 8.1.0.3030 allow remote attackers to cause a denial of service (memor…

Mitigation only
Fix from $1,950 2013-07-29
Writer 2007 HIGH 9.3
CVE-2013-0710

Buffer overflow in Kingsoft Writer 2007 and 2010 before 2724 allows remote attackers to execute arbitrary code via a crafted RTF document.

Fix: after 2723
Fix from $1,950 2013-03-05
Personal Firewall 9 MEDIUM 5.3
CVE-2010-5164

Race condition in KingSoft Personal Firewall 9 Plus 2009.05.07.70 on Windows XP allows local users to bypass kernel-mode hook handlers, and execute d…

Mitigation only
Fix from $1,600 2012-08-25
Kingsoft Antivirus HIGH 7.2
CVE-2010-3396

Buffer overflow in kavfm.sys in Kingsoft Antivirus 2010.04.26.648 and earlier allows local users to execute arbitrary code via a long argument to IOC…

Fix: after 2010.04.26.648
Fix from $1,950 2010-09-15
Webshield HIGH 7.2
CVE-2010-2031

KAVSafe.sys 2010.4.14.609 and earlier, as used in Kingsoft Webshield 3.5.1.2 and earlier, allows local users to overwrite arbitrary kernel memory via…

Fix: after 3.5.1.2
Fix from $1,950 2010-05-24
Antivirus Online Update Module HIGH 10.0
CVE-2008-1307EPSS 15%

Heap-based buffer overflow in the KUpdateObj2 Class ActiveX control in UpdateOcx2.dll in Beijing KingSoft Antivirus Online Update Module 2007.12.29.2…

No fix yet
Fix from $1,950 2008-03-12
Xdict MEDIUM 5.0
CVE-2004-1494

Buffer overflow in the Screen Fetch option in XDICT 2002 through 2005 allows remote attackers to cause a denial of service ( CPU consumption or appli…

No fix yet
Fix from $1,600 2004-12-31