vendor:
Microsoft Office
by:
Vlad Ovtchinikov
9,3
CVSS
HIGH
SandWorm CVE-2014-4114
20
CWE
Product Name: Microsoft Office
Affected Version From: Unknown
Affected Version To: Unknown
Patch Exists: Yes
Related CWE: CVE-2014-4114
CPE: None
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows, Linux, Mac
2014
CVE-2014-4114 SandWorm builder
This exploit builder is a quick and ugly exploit for the SandWorm CVE-2014-4114 vulnerability. It is built to run on Linux/MacOSX and was tested on Win7Sp1 64 bit with Microsoft Office 2013 Plus. It modifies the oleObject1.bin and oleObject2.bin files to include the host, share, and dropper file, and then zips the modified PoC into a .ppsx file.
Mitigation:
Microsoft released a patch for this vulnerability in October 2014.