CVE-2022-24644 is a remote code execution vulnerability affecting ZZ Inc. KeyMouse Windows 3.08 and earlier. An unauthenticated attacker can exploit this during an update, requiring user interaction to trigger the update. With a CVSS score of 8.8 (High), it poses a significant risk for confidentiality, integrity, and availability. There is currently no public exploit code, active exploitation, or significant community discussion surrounding this vulnerability.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
2.02CPE matchmatch criteria | cpe:2.3:o:zzinc:keymouse_firmware:2.02:*:*:*:*:windows:*:* | ||
3.05CPE matchmatch criteria | cpe:2.3:o:zzinc:keymouse_firmware:3.05:*:*:*:*:windows:*:* | ||
3.08CPE matchmatch criteria | cpe:2.3:o:zzinc:keymouse_firmware:3.08:*:*:*:*:windows:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.2 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.1 Security Researcher mentions.
Remediation records are not available for this CVE.