CVE-2014-1778: Medium severity Microsoft Internet Explorer vulnerability
Published Jun 11, 2014
·Updated
Microsoft Internet Explorer 8 through 11 allows remote attackers to execute arbitrary web script with increased privileges via unspecified vectors, aka "Internet Explorer Elevation of Privilege Vulnerability," a different vulnerability than CVE-2014-2777.
Affected Software
4 affected components
Microsoft Internet Explorer=8
Microsoft Internet Explorer=9
Microsoft Internet Explorer=10
Microsoft Internet Explorer=11
Event History
Jun 11, 2014
CVE Published
via MITRE·01:00 AM
Data Sourced
via MITRE·01:00 AM
Description
Data Sourced
via NVD·04:56 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2014-1778?
CVE-2014-1778 is rated as a critical vulnerability allowing remote code execution.
2
How do I fix CVE-2014-1778?
To fix CVE-2014-1778, apply the security updates provided by Microsoft for Internet Explorer 8, 9, 10, and 11.
3
What versions of Internet Explorer are affected by CVE-2014-1778?
CVE-2014-1778 affects Internet Explorer versions 8, 9, 10, and 11.
4
Can CVE-2014-1778 be exploited remotely?
Yes, CVE-2014-1778 can be exploited remotely by attackers to execute arbitrary web scripts with elevated privileges.
5
Is there a workaround for CVE-2014-1778?
While a patch is recommended, users may mitigate CVE-2014-1778 risks by disabling Active Scripting in Internet Explorer.