CVE-2014-1762
published 2014-04-27CVE-2014-1762: Unspecified vulnerability in Microsoft Internet Explorer 6 through 11 allows remote attackers to execute arbitrary code with medium-integrity privileges and…
PriorityP270high7.5CVSS 2.0
AVNACLAuNCPIPAP
EXPLOIT
EPSS
70.52%
99.3th percentile
Unspecified vulnerability in Microsoft Internet Explorer 6 through 11 allows remote attackers to execute arbitrary code with medium-integrity privileges and bypass a sandbox protection mechanism via unknown vectors, as demonstrated by ZDI during a Pwn4Fun competition at CanSecWest 2014.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| microsoft | internet_explorer | — | — |
| microsoft | internet_explorer | — | — |
| microsoft | internet_explorer | — | — |
| microsoft | internet_explorer | — | — |
| microsoft | internet_explorer | — | — |
| microsoft | internet_explorer | — | — |
CVEs like this are exactly what “Exploited This Week” covers.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
VulDB
Microsoft Internet Explorer up to 11 memory corruption (MS14-035 / EDB-33860)
vuldb·2026-05-12·CVSS 7.5
CVE-2014-1762 [HIGH] Microsoft Internet Explorer up to 11 memory corruption (MS14-035 / EDB-33860)
A vulnerability, which was classified as critical, was found in Microsoft Internet Explorer up to 11. This impacts an unknown function. Such manipulation leads to memory corruption.
This vulnerability is traded as CVE-2014-1762. The attack may be launched remotely. Furthermore, there is an exploit available.
It is advisable to implement a patch to correct this issue.
GHSA
GHSA-qww7-7246-4v79: Unspecified vulnerability in Microsoft Internet Explorer 6 through 11 allows remote attackers to execute arbitrary code with medium-integrity privileg
ghsa_unreviewed·2022-05-14
CVE-2014-1762 [HIGH] GHSA-qww7-7246-4v79: Unspecified vulnerability in Microsoft Internet Explorer 6 through 11 allows remote attackers to execute arbitrary code with medium-integrity privileg
Unspecified vulnerability in Microsoft Internet Explorer 6 through 11 allows remote attackers to execute arbitrary code with medium-integrity privileges and bypass a sandbox protection mechanism via unknown vectors, as demonstrated by ZDI during a Pwn4Fun competition at CanSecWest 2014.
No detection rules found.
http://twitter.com/thezdi/statuses/443810610958958592http://www.pwn2own.com/2014/03/pwn2own-results-for-wednesday-day-one/http://www.securityfocus.com/bid/67511http://www.securitytracker.com/id/1030370https://docs.microsoft.com/en-us/security-updates/securitybulletins/2014/ms14-035http://twitter.com/thezdi/statuses/443810610958958592http://www.pwn2own.com/2014/03/pwn2own-results-for-wednesday-day-one/http://www.securityfocus.com/bid/67511http://www.securitytracker.com/id/1030370https://docs.microsoft.com/en-us/security-updates/securitybulletins/2014/ms14-035
2014-04-27
Published