Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-cfc9-f8qw-f5wh

Опубликовано: 27 нояб. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 8.8

Описание

An uninitialized pointer use vulnerability exists in the functionality of WPS Office 11.2.0.11537 that handles Data elements in an Excel file. A specially crafted malformed file can lead to remote code execution. An attacker can provide a malicious file to trigger this vulnerability.

An uninitialized pointer use vulnerability exists in the functionality of WPS Office 11.2.0.11537 that handles Data elements in an Excel file. A specially crafted malformed file can lead to remote code execution. An attacker can provide a malicious file to trigger this vulnerability.

EPSS

Процентиль: 76%
0.00967
Низкий

8.8 High

CVSS3

Дефекты

CWE-457
CWE-908

Связанные уязвимости

CVSS3: 8.8
nvd
около 2 лет назад

An uninitialized pointer use vulnerability exists in the functionality of WPS Office 11.2.0.11537 that handles Data elements in an Excel file. A specially crafted malformed file can lead to remote code execution. An attacker can provide a malicious file to trigger this vulnerability.

CVSS3: 8.8
fstec
около 2 лет назад

Уязвимость пакета офисных программ WPS Office, связанная с использованием неинициализированного ресурса, позволяющая нарушителю выполнить произвольный код

EPSS

Процентиль: 76%
0.00967
Низкий

8.8 High

CVSS3

Дефекты

CWE-457
CWE-908