Link Manipulation Vulnerability in WPS Office for iOS by Kingsoft Office Software Corporation
CVE-2024-56957
6.5MEDIUM
Key Information:
- Status
- Vendor
- CVE Published:
- 27 January 2025
What is CVE-2024-56957?
A vulnerability in WPS Office for iOS, specifically version 12.20.0, allows attackers to exploit a crafted link, leading to unauthorized access to sensitive user information. This issue poses a significant risk to users who may unintentionally interact with harmful links, emphasizing the need for vigilance and mitigation strategies to safeguard personal data.
References
CVSS V3.1
Score:
6.5
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved