CVE-2014-2777

Microsoft Internet Explorer - Code Injection

Title source: rule

Description

Microsoft Internet Explorer 8 through 11 allows remote attackers to execute arbitrary web script with increased privileges via unspecified vectors, aka "Internet Explorer Elevation of Privilege Vulnerability," a different vulnerability than CVE-2014-1778.

Exploits (1)

exploitdb WORKING POC
htmldoswindows_x86
https://www.exploit-db.com/exploits/34010

Scores

EPSS 0.3401
EPSS Percentile 96.9%

Classification

CWE
CWE-94
Status draft

Affected Products (4)

microsoft/internet_explorer
microsoft/internet_explorer
microsoft/internet_explorer
microsoft/internet_explorer

Timeline

Published Jun 11, 2014
Tracked Since Feb 18, 2026