Sploitus

CVE-2014-6352

14 known exploits for CVE-2014-6352

Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 allow remote attackers to execute arbitrary code via a crafted OLE object, as exploited in the wild in October 2014 with a crafted PowerPoint document.

Microsoft Windows 7
All versions
Microsoft Windows 8
All versions
Microsoft Windows 8.1
All versions
Microsoft Windows Rt
All versions
Microsoft Windows Rt 8.1
All versions
Microsoft Windows Server 2008
All versions
CVSS 2.0
9.3 HIGH
CVSS 3.1
7.8 HIGH
EPSS
77.6% (100th percentile)
NVD status
Analyzed
Published
2014-10-22
CVE-2014-6352 at NVD
Authoritative description, scoring and affected products

14 known exploits for CVE-2014-6352

Proof-of-concept code and exploit modules indexed by Sploitus

Microsoft-Office-2007-and-2010---OLE-Arbitrary-Command-Execution
2015-01-04 Abhishek LyallEXPLOITPACKPython
MS14-064 Microsoft Windows OLE Package Manager Code Execution Exploit
2014-11-16 metasploitZDTRuby
Microsoft Windows - OLE Package Manager Code Execution (via Python) (MS14-064) (Metasploit)
2014-11-14 MetasploitEXPLOITDBRuby
Microsoft Windows - OLE Package Manager Code Execution (MS14-064) (Metasploit)
2014-11-14 MetasploitEXPLOITDBRuby
MS14-064 Microsoft Windows OLE Package Manager Code Execution Through Python
2014-11-14 Haifei LiPACKETSTORMRuby
MS14-064 Microsoft Windows OLE Package Manager Code Execution
2014-11-13 Haifei LiPACKETSTORMRuby
MS Office 2007 and 2010 - OLE Arbitrary Command Execution
2014-11-13 RootSEEBUGPython
MS Office 2007 and 2010 - OLE Arbitrary Command Execution Exploit
2014-11-12 Abhishek LyallZDTPython
Microsoft Office 20072010 - OLE Arbitrary Command Execution
2014-11-12 Abhishek LyallEXPLOITPACKPython
Microsoft Office 2007/2010 - OLE Arbitrary Command Execution
2014-11-12 Abhishek LyallEXPLOITDBPython
Microsoft Windows - OLE Remote Code Execution 'Sandworm' (MS14-060)
2014-10-25 Mike CzumakEXPLOITDBPython
MS14-064 Microsoft Windows OLE Package Manager Code Execution
2014-10-21 Haifei Li, sinn3r <sinn3r@metasploit.com>, juan vazquez <juan.vazquez@metasploit.com>METASPLOITRuby
Microsoft Windows - OLE Package Manager SandWorm
2014-10-20 Vlad OvtchinikovEXPLOITDBPython
Microsoft Windows - OLE Package Manager Code Execution (MS14-060) (Metasploit)
2014-10-20 MetasploitEXPLOITDBRuby