cve-2014-4077

HIGH cisa_known_exploited
Description

Microsoft Input Method Editor (IME) Japanese is a keyboard with Japanese characters that can be enabled on Windows systems as it is included by default (with the default set as disabled). IME Japanese contains an unspecified vulnerability when IMJPDCT.EXE (IME for Japanese) is installed which allows attackers to bypass a sandbox and perform privilege escalation.

Timeline
Published
2022-05-25
Last Modified
2022-05-25
CVSS Details

CVSS details not available.

Affected Products

No product information available.

References

No references available.

Linked Vulnerabilities

No linked vulnerabilities found.

{
  "cvss": 0.0,
  "datePublished": "2022-05-25",
  "dateUpdated": "2022-05-25",
  "description": "Microsoft Input Method Editor (IME) Japanese is a keyboard with Japanese characters that can be enabled on Windows systems as it is included by default (with the default set as disabled). IME Japanese contains an unspecified vulnerability when IMJPDCT.EXE (IME for Japanese) is installed which allows attackers to bypass a sandbox and perform privilege escalation.",
  "dueDate": "2022-06-15",
  "id": "CVE-2014-4077",
  "kev_catalogs": [
    "cisa"
  ],
  "knownRansomwareCampaignUse": "Unknown",
  "notes": "https://nvd.nist.gov/vuln/detail/CVE-2014-4077",
  "product": "Input Method Editor (IME) Japanese",
  "requiredAction": "Apply updates per vendor instructions.",
  "severity": "HIGH",
  "source": "cisa_known_exploited",
  "title": "Microsoft IME Japanese Privilege Escalation Vulnerability",
  "vendor": "Microsoft"
}
Enrichment data
View JSON API Download JSON