CVE Vulnerabilities

CVE-2014-4077

Published: Nov 11, 2014 | Modified: Oct 12, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
9.3 HIGH
AV:N/AC:M/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu

Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, and Office 2007 SP3, when IMJPDCT.EXE (aka IME for Japanese) is installed, allow remote attackers to bypass a sandbox protection mechanism via a crafted PDF document, aka Microsoft IME (Japanese) Elevation of Privilege Vulnerability, as exploited in the wild in 2014.

Affected Software

Name Vendor Start Version End Version
Windows_server_2008 Microsoft * *
Windows_server_2008 Microsoft * *
Windows_vista Microsoft * *
Windows_server_2008 Microsoft * *
Windows_server_2008 Microsoft * *
Windows_server_2008 Microsoft r2 r2
Windows_server_2008 Microsoft r2 r2
Windows_vista Microsoft * *
Windows_server_2003 Microsoft * *
Windows_7 Microsoft * *
Windows_server_2003 Microsoft * *
Office Microsoft 2007 2007
Windows_server_2008 Microsoft r2 r2
Windows_server_2003 Microsoft * *
Windows_7 Microsoft * *
Windows_server_2008 Microsoft * *

References