CVE-2022-44875
06.03.2023, 05:15
KioWare through 8.33 on Windows sets KioScriptingUrlACL.AclActions.AllowHigh for the about:blank origin, which allows attackers to obtain SYSTEM access via KioUtils.Execute in JavaScript code.
Vendor | Product | Version |
---|---|---|
kioware | kioware | 𝑥 ≤ 8.33 |
𝑥
= Vulnerable software versions