← Back

CVE-2014-1764

nvd nist
Published: Apr 27, 2014Modified: May 6, 2026

JSON object

Loading...
10.0
Vector
AV:N/AC:L/Au:N/C:C/I:C/A:C
Exploitability: 10.0 / Impact: 10.0
Source: NVD

Description

Microsoft Internet Explorer 7 through 11 allows remote attackers to execute arbitrary code and bypass a sandbox protection mechanism by leveraging "object confusion" in a broker process, as demonstrated by VUPEN during a Pwn2Own competition at CanSecWest 2014.

Affected (5)

1 product
Internet Explorer
Configuration A
5 vulnerable
Vulnerable SoftwareAffected Versions
Microsoft
Version 10
Version 11
Version 7
Version 8
Version 9

Related CWEs

Timeline

No history available yet.