RaqibCTI
CVE

CVE-2024-7262

P2
Kingsoft WPS Office Path Traversal Vulnerability
Kingsoft · WPS Office
Date added (CISA)
2024-09-03
Remediation due
2024-09-24
Known ransomware use
Not indicated
Remediation priority
P2past CISA due date

Description

Kingsoft WPS Office contains a path traversal vulnerability in promecefpluginhost.exe on Windows that allows an attacker to load an arbitrary Windows library.

Source: NVD ↗ · CISA KEV Catalog ↗