CRITICAL🇵🇱 Wersja polska

CVE-2024-7263

CVSS 9.3v4.0pub. 2024-08-15upd. 2025-04-24

Improper path validation in promecefpluginhost.exe in Kingsoft WPS Office version ranging from 12.2.0.13110 to 12.2.0.17115 (exclusive) on Windows allows an attacker to load an arbitrary Windows library. The patch released in version 12.1.0.17119 to mitigate CVE-2024-7262 was not restrictive enough. Another parameter was not properly sanitized which leads to the execution of an arbitrary Windows library.

🤖 AI Analysis
How it works

The promecefpluginhost.exe component improperly validates paths passed as input parameters, enabling a path traversal technique. An attacker can craft an appropriately constructed path that forces the application to load an arbitrary Windows library (DLL). The patch released in version 12.1.0.17119 to fix CVE-2024-7262 was not sufficiently restrictive — one of the parameters was still not properly filtered, leaving an open door for exploitation.

Impact

An attacker can achieve arbitrary code execution by loading a malicious DLL library in the context of the WPS Office process, potentially resulting in complete compromise of the victim's system.

Mitigation & patch

Kingsoft WPS Office should be updated to version 12.2.0.17119 or later, in which the vendor released an improved patch addressing the insufficient security measures introduced by the CVE-2024-7262 patch. Details are available at: https://www.wps.com/whatsnew/pc/20240422/

Who is affected

Kingsoft WPS Office versions from 12.2.0.13110 to 12.2.0.17115 (exclusive) on Microsoft Windows

Analysis generated by Claude AI (Anthropic) based on NVD data. Always verify with vendor.
CVSS Vector
CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:P/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:N/R:X/V:X/RE:X/U:X
  • Kingsoft Wps Office

    APP
    Kingsoft
    12.2.0.13110 – 12.2.0.17153 (excl.)
  • Microsoft Windows

    OS
    Microsoft
    all versions
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
Tags
Path Traversal
CWE
References

Related vulnerabilities

CVE-2026-8398CRITICAL9.3⚠ KEVPL ✓same product

Atak na łańcuch dostaw DAEMON Tools Lite — trojanizacja instalatorów

CVE-2025-10585CRITICAL9.8⚠ KEVPL ✓same product

Type confusion w V8 (Google Chrome) — zdalne uszkodzenie sterty

CVE-2025-34028CRITICAL9.3⚠ KEVPL ✓same product

Commvault Command Center – nieuwierzytelniony RCE przez path traversal w ZIP

CVE-2024-7262CRITICAL9.3⚠ KEVPL ✓same product

Path Traversal w Kingsoft WPS Office — ładowanie dowolnej biblioteki Windows

CVE-2024-4577CRITICAL9.8⚠ KEVPL ✓same product

PHP CGI argument injection – RCE na Windows przez mechanizm Best-Fit