Junglewise Threat Intelligence

CVE-2014-2817: Microsoft Internet Explorer Privilege Escalation Vulnerability

CVE-2014-2817 · Severity: critical · CVSS 8.8 · Exploited in the wild · Published 2022-05-25

Technologies: Microsoft Edge, Microsoft Internet Explorer. Vendors: Microsoft.

Executive brief

Microsoft Internet Explorer 6 through 11 contains an elevation of privilege vulnerability. A remote attacker can exploit this by enticing a user to visit a specially crafted website, potentially gaining elevated privileges on the affected system.

Affected products

  • Microsoft Internet Explorer 6 through 11

Timeline

  • 2014-08-12: patched: Microsoft released security bulletin MS14-051 to address this issue.
  • 2022-05-25: kev added: Added to CISA's Known Exploited Vulnerabilities Catalog.
  • 2022-05-25: disclosed: NVD publication date.

Related threats