← All CVEs

CVE-2014-6364

high · 9.3

Use-after-free vulnerability in Microsoft Office 2007 SP3; 2010 SP2; 2013 Gold, SP1, and SP2; and 2013 RT Gold and SP1 allows remote attackers to execute arbitrary code via a crafted Office document, aka "Microsoft Office Component Use After Free Vulnerability."

9.3
CVSS
14.7%
EPSS (exploit prob.)
97th
EPSS percentile
2014-12-11
Published

AV:N/AC:M/Au:N/C:C/I:C/A:C

Affected products

VendorProductAffected versions
microsoftoffice2007
microsoftoffice2010
microsoftoffice2010
microsoftoffice2013
microsoftoffice2013
microsoftoffice2013
microsoftoffice2013
microsoftoffice2013

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2014-6364