← All CVEs

CVE-2014-6362

medium · 4.3

Use-after-free vulnerability in Microsoft Office 2007 SP3, 2010 SP2, and 2013 Gold and SP1 allows remote attackers to bypass the ASLR protection mechanism via a crafted document, aka "Microsoft Office Component Use After Free Vulnerability."

4.3
CVSS
16.2%
EPSS (exploit prob.)
97th
EPSS percentile
2015-02-11
Published

AV:N/AC:M/Au:N/C:P/I:N/A:N

Affected products

VendorProductAffected versions
microsoftoffice2007
microsoftoffice2010
microsoftoffice2010
microsoftoffice2013
microsoftoffice2013

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2014-6362