CVE-2014-0268: Medium severity Microsoft Internet Explorer vulnerability
Microsoft Internet Explorer 8 through 11 does not properly restrict file installation and registry-key creation, which allows remote attackers to bypass the Mandatory Integrity Control protection mechanism via a crafted web site, aka "Internet Explorer Elevation of Privilege Vulnerability."
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2014-0268?
CVE-2014-0268 is classified as a critical vulnerability due to its potential for privilege escalation.
How do I fix CVE-2014-0268?
To fix CVE-2014-0268, users should update Microsoft Internet Explorer to the latest version available.
What versions of Internet Explorer are affected by CVE-2014-0268?
CVE-2014-0268 affects Microsoft Internet Explorer versions 8, 9, 10, and 11.
What type of attack does CVE-2014-0268 enable?
CVE-2014-0268 enables remote attackers to bypass Mandatory Integrity Control protection mechanisms.
Is CVE-2014-0268 a web-based vulnerability?
Yes, CVE-2014-0268 can be exploited through crafted websites that target vulnerable versions of Internet Explorer.