Lucene search

K
cveMicrosoftCVE-2014-0302
HistoryMar 12, 2014 - 5:15 a.m.

CVE-2014-0302

2014-03-1205:15:19
CWE-119
microsoft
web.nvd.nist.gov
36
4
cve-2014-0302
memory corruption
remote code execution
denial of service
internet explorer
microsoft

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

7.6

Confidence

High

EPSS

0.894

Percentile

98.8%

Microsoft Internet Explorer 6 through 8 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka β€œInternet Explorer Memory Corruption Vulnerability,” a different vulnerability than CVE-2014-0303.

Affected configurations

Nvd
Node
microsoftinternet_explorerMatch6
OR
microsoftinternet_explorerMatch7
OR
microsoftinternet_explorerMatch8
VendorProductVersionCPE
microsoftinternet_explorer7cpe:/a:microsoft:internet_explorer:7:::
microsoftinternet_explorer8cpe:/a:microsoft:internet_explorer:8:::
microsoftinternet_explorer6cpe:/a:microsoft:internet_explorer:6:::

Social References

More

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

7.6

Confidence

High

EPSS

0.894

Percentile

98.8%