CVE-2014-4077CISA KEV
Microsoft IME Japanese Privilege Escalation Vulnerability
CISA lists this Microsoft vulnerability as known exploited. Its MSRC release detail is outside this installation's collected history.
CISA catalog record
Microsoft Input Method Editor (IME) Japanese is a keyboard with Japanese characters that can be enabled on Windows systems as it is included by default (with the default set as disabled). IME Japanese contains an unspecified vulnerability when IMJPDCT.EXE (IME for Japanese) is installed which allows attackers to bypass a sandbox and perform privilege escalation.
- Product
- Input Method Editor (IME) Japanese
- Added to KEV
- 25 May 2022
- Federal remediation due
- 15 Jun 2022
- Known ransomware use
- Not reported