9.3
CVE-2014-6363
- EPSS 28.44%
- Veröffentlicht 11.12.2014 00:59:13
- Zuletzt bearbeitet 06.05.2026 22:30:45
- Erkennungen
vbscript.dll in Microsoft VBScript 5.6 through 5.8, as used with Internet Explorer 6 through 11 and other products, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "VBScript Memory Corruption Vulnerability."
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Microsoft ≫ Internet Explorer Version 6
Microsoft ≫ Internet Explorer Version 7
Microsoft ≫ Internet Explorer Version 8
Microsoft ≫ Internet Explorer Version 9
Microsoft ≫ Internet Explorer Version 10
Microsoft ≫ Internet Explorer Version 11 Update -
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 28.44% | 0.979 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 9.3 | 8.6 | 10 |
AV:N/AC:M/Au:N/C:C/I:C/A:C
|
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2014/ms14-080
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2014/ms14-084
https://www.exploit-db.com/exploits/40721/
https://www.verisign.com/en_US/security-services/security-intelligence/vulnerability-reports/articles/index.xhtml?id=1075