CVE-2024-11957
Severity CVSS v4.0:
CRITICAL
Type:
Unavailable / Other
Publication date:
04/03/2025
Last modified:
04/03/2025
Description
Improper verification of the digital signature in ksojscore.dll in Kingsoft WPS Office in versions equal or less than 12.1.0.18276<br />
<br />
on Windows allows an attacker to load an arbitrary Windows library. The patch released in version 12.2.0.16909 to mitigate CVE-2024-7262 was not restrictive enough.
Impact
Base Score 4.0
9.30
Severity 4.0
CRITICAL