CVE-2014-6363
vbscript.dll in Microsoft VBScript 5.6 through 5.8, as used with Internet Explorer 6 through 11 and other products, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "VBScript Memory Corruption Vulnerability."
- Affected products
- Internet Explorer, Vbscript
- Microsoft Vbscript
- = 5.6, 5.7, 5.8
- Microsoft Internet Explorer
- = 6, 7, 8, 9, 10, 11
- CVSS 2.0
- 9.3 HIGH
- EPSS
- 28.4% (98th percentile)
- Weakness
- CWE-399
- NVD status
- Modified
- Published
- 2014-12-11
CVE-2014-6363 at NVD
3 known exploits for CVE-2014-6363
Proof-of-concept code and exploit modules indexed by Sploitus