Beveiligingsadvies

CVE-2022-44875

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2023-03-06 00:00:00
Laatst bijgewerkt 2025-03-06 20:41:24
Toegewezen door mitre
CVSS-score 5.4
Status PUBLISHED

Beschrijving

KioWare through 8.33 on Windows sets KioScriptingUrlACL.AclActions.AllowHigh for the about:blank origin, which allows attackers to obtain SYSTEM access via KioUtils.Execute in JavaScript code.