Your RSA-2048 keys break in 2030. Find every one of them before attackers do.
CISA KEV·Added 2022-02-25 — agencies required to remediate by 2022-08-25

CVE-2014-6352

HIGH

Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 allow remote attackers…

Published
Oct 22, 2014
Updated
Apr 22, 2026
Affected
0 pkgs
Patched
None yet
Exploits
11 known

EPSS Exploitation Probability

via FIRST.org ↗
90.7%probability of exploitation in next 30 days
Very High Risk100th percentile0.00%
90.2%90.6%90.9%91.2%90.7%90.7%Dec 25Apr 26Jun 26

EPSS (Exploit Prediction Scoring System) is a daily probability model maintained by FIRST.org. It estimates the likelihood a CVE will be exploited in production environments within the next 30 days, derived from real-world threat intelligence signals.

Description

Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 allow remote attackers to execute arbitrary code via a crafted OLE object, as exploited in the wild in October 2014 with a crafted PowerPoint document.

Affected Products

8 products · 10 configurations
OS
windows 7microsoft
all
OS
windows 8microsoft
all
OS
windows 8.1microsoft
all
OS
windows rtmicrosoft
all
OS
windows rt 8.1microsoft
all
OS
windows server 2008microsoft
1 version
r2
Exploits & PoCs
11

Research use only. For defensive security, authorized penetration testing, and academic research only. Never execute exploit code against systems without explicit written authorization.

EDB-35216localwindows

Microsoft Office 2007/2010 - OLE Arbitrary Command Execution

by Abhishek Lyall · Nov 12, 2014

EDB-35055remotewindows

Microsoft Windows - OLE Remote Code Execution 'Sandworm' (MS14-060)

by Mike Czumak · Oct 25, 2014

EDB-35020localwindows_x86✓ Verified

Microsoft Windows - OLE Package Manager Code Execution (MS14-060) (Metasploit)

by Metasploit · Oct 20, 2014

EDB-35236localwindows✓ Verified

Microsoft Windows - OLE Package Manager Code Execution (MS14-064) (Metasploit)

by Metasploit · Nov 14, 2014

EDB-35235localwindows✓ Verified

Microsoft Windows - OLE Package Manager Code Execution (via Python) (MS14-064) (Metasploit)

by Metasploit · Nov 14, 2014

EDB-35019localwindows

Microsoft Windows - OLE Package Manager SandWorm

by Vlad Ovtchinikov · Oct 20, 2014

Frequently Asked Questions

Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 allow remote attackers to execute arbitrary code via a crafted OLE object, as exploited in the wild in October 2014 with a crafted PowerPoint document.
O3 Security · Impact-Aware SCA

Is CVE-2014-6352 in your stack?

O3 detects CVE-2014-6352 across dependencies and uses function-level reachability to confirm whether the vulnerable code path is actually reachable — not just present. No false positives.