High severity7.8NVD Advisory· Published Mar 12, 2018· Updated Jun 17, 2026
CVE-2018-6400
CVE-2018-6400
Description
Kingsoft WPS Office Free 10.2.0.5978 allows local users to gain privileges or cause a denial of service by impersonating all the pipes through a use of \\.\pipe\WPSCloudSvr\WpsCloudSvr -- an "insecurely created named pipe." Ensures full access to Everyone users group.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2cpe:2.3:a:kingsoftstore:wps_office_free:10.2.0.5978:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:kingsoftstore:wps_office_free:10.2.0.5978:*:*:*:*:*:*:*
- (no CPE)range: =10.2.0.5978
Patches
Vulnerability mechanics
References
3- seclists.org/fulldisclosure/2018/Mar/27nvdMailing ListThird Party Advisory
- jvn.jp/en/jp/JVN14434132/nvd
- www.wps365.jp/notices/4nvd
News mentions
0No linked articles in our index yet.