CVE-2014-6332
Microsoft Windows Object Linking & Embedding (OLE) Automation Array Remote Code Execution Vulnerability
8.8
CVSS 3.1
95.0 %
EPSS (current)
2022-03-25
KEV addition
No
Ransomware
Timeline
Publication, first public exploit and KEV addition on a day axis.
Key facts
Vendor / product: Microsoft / Windows
Published: 2014-11-11 · Due (CISA): 2022-04-15
CWE: CWE-119 · EU list: no
Exploit references (metadata only)
| Source | Reference | Title | Date |
|---|---|---|---|
| exploitdb | 35229 | Microsoft Internet Explorer 11 - OLE Automation Array Remote Code Execution (1) | 2014-11-13 |
| exploitdb | 35230 | Microsoft Internet Explorer < 11 - OLE Automation Array Remote Code Execution (Metasploit) | 2014-11-13 |
| metasploit | exploit/windows/browser/ms14_064_ole_code_execution | exploit/windows/browser/ms14_064_ole_code_execution | 2014-11-13 |
| exploitdb | 35308 | Microsoft Internet Explorer OLE Pre-IE11 - Automation Array Remote Code Execution / PowerShell VirtualAlloc (MS14-064) | 2014-11-20 |
| exploitdb | 36516 | Acunetix 9.5 - OLE Automation Array Remote Code Execution | 2015-03-27 |
| exploitdb | 37400 | Havij - OLE Automation Array Remote Code Execution | 2015-06-27 |
| exploitdb | 37668 | Internet Download Manager - OLE Automation Array Remote Code Execution | 2015-07-21 |
| exploitdb | 37800 | Microsoft Windows HTA (HTML Application) - Remote Code Execution (MS14-064) | 2015-08-17 |
| exploitdb | 38500 | HTML Compiler - Remote Code Execution | 2015-10-20 |
| exploitdb | 38512 | The World Browser 3.0 Final - Remote Code Execution | 2015-10-22 |
References only — no downloads or instructions.