VYPR
Medium severity5.4NVD Advisory· Published Mar 6, 2023· Updated Jun 17, 2026

CVE-2022-44875

CVE-2022-44875

Description

KioWare through 8.33 on Windows sets KioScriptingUrlACL.AclActions.AllowHigh for the about:blank origin, which allows attackers to obtain SYSTEM access via KioUtils.Execute in JavaScript code.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • KioWare/KioWare2 versions
    cpe:2.3:a:kioware:kioware:*:*:*:*:*:windows:*:*+ 1 more
    • cpe:2.3:a:kioware:kioware:*:*:*:*:*:windows:*:*range: <=8.33
    • (no CPE)range: <=8.33
  • KioWare/KioWaredescription

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.