Vulnerabilites related to justsystems - ichitaro_portable
CVE-2013-3644 (GCVE-0-2013-3644)
Vulnerability from cvelistv5
Published
2013-06-18 18:45
Modified
2024-09-17 01:46
Severity ?
VLAI Severity ?
EPSS score ?
CWE
- n/a
Summary
Unspecified vulnerability in JustSystems Ichitaro 2006 through 2013; Ichitaro Pro through 2; Ichitaro Government 6, 7, and 2006 through 2010; Ichitaro Portable with oreplug; Ichitaro Viewer; and Ichitaro JUST School through 2010 allows remote attackers to execute arbitrary code via a crafted document.
References
► | URL | Tags | |||||||||
---|---|---|---|---|---|---|---|---|---|---|---|
|
{ "containers": { "adp": [ { "providerMetadata": { "dateUpdated": "2024-08-06T16:14:56.539Z", "orgId": "af854a3a-2127-422b-91ae-364da2661108", "shortName": "CVE" }, "references": [ { "tags": [ "x_refsource_CONFIRM", "x_transferred" ], "url": "http://www.justsystems.com/jp/info/js13002.html" }, { "name": "JVN#98712361", "tags": [ "third-party-advisory", "x_refsource_JVN", "x_transferred" ], "url": "http://jvn.jp/en/jp/JVN98712361/index.html" }, { "name": "JVNDB-2013-000058", "tags": [ "third-party-advisory", "x_refsource_JVNDB", "x_transferred" ], "url": "http://jvndb.jvn.jp/jvndb/JVNDB-2013-000058" } ], "title": "CVE Program Container" } ], "cna": { "affected": [ { "product": "n/a", "vendor": "n/a", "versions": [ { "status": "affected", "version": "n/a" } ] } ], "descriptions": [ { "lang": "en", "value": "Unspecified vulnerability in JustSystems Ichitaro 2006 through 2013; Ichitaro Pro through 2; Ichitaro Government 6, 7, and 2006 through 2010; Ichitaro Portable with oreplug; Ichitaro Viewer; and Ichitaro JUST School through 2010 allows remote attackers to execute arbitrary code via a crafted document." } ], "problemTypes": [ { "descriptions": [ { "description": "n/a", "lang": "en", "type": "text" } ] } ], "providerMetadata": { "dateUpdated": "2013-06-18T18:45:00Z", "orgId": "ede6fdc4-6654-4307-a26d-3331c018e2ce", "shortName": "jpcert" }, "references": [ { "tags": [ "x_refsource_CONFIRM" ], "url": "http://www.justsystems.com/jp/info/js13002.html" }, { "name": "JVN#98712361", "tags": [ "third-party-advisory", "x_refsource_JVN" ], "url": "http://jvn.jp/en/jp/JVN98712361/index.html" }, { "name": "JVNDB-2013-000058", "tags": [ "third-party-advisory", "x_refsource_JVNDB" ], "url": "http://jvndb.jvn.jp/jvndb/JVNDB-2013-000058" } ], "x_legacyV4Record": { "CVE_data_meta": { "ASSIGNER": "vultures@jpcert.or.jp", "ID": "CVE-2013-3644", "STATE": "PUBLIC" }, "affects": { "vendor": { "vendor_data": [ { "product": { "product_data": [ { "product_name": "n/a", "version": { "version_data": [ { "version_value": "n/a" } ] } } ] }, "vendor_name": "n/a" } ] } }, "data_format": "MITRE", "data_type": "CVE", "data_version": "4.0", "description": { "description_data": [ { "lang": "eng", "value": "Unspecified vulnerability in JustSystems Ichitaro 2006 through 2013; Ichitaro Pro through 2; Ichitaro Government 6, 7, and 2006 through 2010; Ichitaro Portable with oreplug; Ichitaro Viewer; and Ichitaro JUST School through 2010 allows remote attackers to execute arbitrary code via a crafted document." } ] }, "problemtype": { "problemtype_data": [ { "description": [ { "lang": "eng", "value": "n/a" } ] } ] }, "references": { "reference_data": [ { "name": "http://www.justsystems.com/jp/info/js13002.html", "refsource": "CONFIRM", "url": "http://www.justsystems.com/jp/info/js13002.html" }, { "name": "JVN#98712361", "refsource": "JVN", "url": "http://jvn.jp/en/jp/JVN98712361/index.html" }, { "name": "JVNDB-2013-000058", "refsource": "JVNDB", "url": "http://jvndb.jvn.jp/jvndb/JVNDB-2013-000058" } ] } } } }, "cveMetadata": { "assignerOrgId": "ede6fdc4-6654-4307-a26d-3331c018e2ce", "assignerShortName": "jpcert", "cveId": "CVE-2013-3644", "datePublished": "2013-06-18T18:45:00Z", "dateReserved": "2013-05-22T00:00:00Z", "dateUpdated": "2024-09-17T01:46:11.964Z", "state": "PUBLISHED" }, "dataType": "CVE_RECORD", "dataVersion": "5.1" }
CVE-2011-1331 (GCVE-0-2011-1331)
Vulnerability from cvelistv5
Published
2011-07-18 22:00
Modified
2024-08-06 22:21
Severity ?
VLAI Severity ?
EPSS score ?
CWE
- n/a
Summary
JustSystems Ichitaro 2005 through 2011, Ichitaro Government 6, Ichitaro Government 2006 through 2010, Ichitaro Portable, Ichitaro Pro, and Ichitaro Viewer allow remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via a crafted document, as exploited in the wild in early 2011.
References
► | URL | Tags | |||||||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
|
{ "containers": { "adp": [ { "providerMetadata": { "dateUpdated": "2024-08-06T22:21:34.200Z", "orgId": "af854a3a-2127-422b-91ae-364da2661108", "shortName": "CVE" }, "references": [ { "name": "44956", "tags": [ "third-party-advisory", "x_refsource_SECUNIA", "x_transferred" ], "url": "http://secunia.com/advisories/44956" }, { "name": "48283", "tags": [ "vdb-entry", "x_refsource_BID", "x_transferred" ], "url": "http://www.securityfocus.com/bid/48283" }, { "name": "JVNDB-2011-000043", "tags": [ "third-party-advisory", "x_refsource_JVNDB", "x_transferred" ], "url": "http://jvndb.jvn.jp/jvndb/JVNDB-2011-000043" }, { "name": "ichitaro-unspec-bo(68072)", "tags": [ "vdb-entry", "x_refsource_XF", "x_transferred" ], "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/68072" }, { "tags": [ "x_refsource_CONFIRM", "x_transferred" ], "url": "http://www.justsystems.com/jp/info/js11001.html" }, { "tags": [ "x_refsource_MISC", "x_transferred" ], "url": "http://www.symantec.com/connect/blogs/targeted-attacks-2011-using-ichitaro-zero-day-vulnerability" }, { "name": "JVN#87239473", "tags": [ "third-party-advisory", "x_refsource_JVN", "x_transferred" ], "url": "http://jvn.jp/en/jp/JVN87239473/index.html" } ], "title": "CVE Program Container" } ], "cna": { "affected": [ { "product": "n/a", "vendor": "n/a", "versions": [ { "status": "affected", "version": "n/a" } ] } ], "datePublic": "2011-06-16T00:00:00", "descriptions": [ { "lang": "en", "value": "JustSystems Ichitaro 2005 through 2011, Ichitaro Government 6, Ichitaro Government 2006 through 2010, Ichitaro Portable, Ichitaro Pro, and Ichitaro Viewer allow remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via a crafted document, as exploited in the wild in early 2011." } ], "problemTypes": [ { "descriptions": [ { "description": "n/a", "lang": "en", "type": "text" } ] } ], "providerMetadata": { "dateUpdated": "2017-08-16T14:57:01", "orgId": "ede6fdc4-6654-4307-a26d-3331c018e2ce", "shortName": "jpcert" }, "references": [ { "name": "44956", "tags": [ "third-party-advisory", "x_refsource_SECUNIA" ], "url": "http://secunia.com/advisories/44956" }, { "name": "48283", "tags": [ "vdb-entry", "x_refsource_BID" ], "url": "http://www.securityfocus.com/bid/48283" }, { "name": "JVNDB-2011-000043", "tags": [ "third-party-advisory", "x_refsource_JVNDB" ], "url": "http://jvndb.jvn.jp/jvndb/JVNDB-2011-000043" }, { "name": "ichitaro-unspec-bo(68072)", "tags": [ "vdb-entry", "x_refsource_XF" ], "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/68072" }, { "tags": [ "x_refsource_CONFIRM" ], "url": "http://www.justsystems.com/jp/info/js11001.html" }, { "tags": [ "x_refsource_MISC" ], "url": "http://www.symantec.com/connect/blogs/targeted-attacks-2011-using-ichitaro-zero-day-vulnerability" }, { "name": "JVN#87239473", "tags": [ "third-party-advisory", "x_refsource_JVN" ], "url": "http://jvn.jp/en/jp/JVN87239473/index.html" } ], "x_legacyV4Record": { "CVE_data_meta": { "ASSIGNER": "vultures@jpcert.or.jp", "ID": "CVE-2011-1331", "STATE": "PUBLIC" }, "affects": { "vendor": { "vendor_data": [ { "product": { "product_data": [ { "product_name": "n/a", "version": { "version_data": [ { "version_value": "n/a" } ] } } ] }, "vendor_name": "n/a" } ] } }, "data_format": "MITRE", "data_type": "CVE", "data_version": "4.0", "description": { "description_data": [ { "lang": "eng", "value": "JustSystems Ichitaro 2005 through 2011, Ichitaro Government 6, Ichitaro Government 2006 through 2010, Ichitaro Portable, Ichitaro Pro, and Ichitaro Viewer allow remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via a crafted document, as exploited in the wild in early 2011." } ] }, "problemtype": { "problemtype_data": [ { "description": [ { "lang": "eng", "value": "n/a" } ] } ] }, "references": { "reference_data": [ { "name": "44956", "refsource": "SECUNIA", "url": "http://secunia.com/advisories/44956" }, { "name": "48283", "refsource": "BID", "url": "http://www.securityfocus.com/bid/48283" }, { "name": "JVNDB-2011-000043", "refsource": "JVNDB", "url": "http://jvndb.jvn.jp/jvndb/JVNDB-2011-000043" }, { "name": "ichitaro-unspec-bo(68072)", "refsource": "XF", "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/68072" }, { "name": "http://www.justsystems.com/jp/info/js11001.html", "refsource": "CONFIRM", "url": "http://www.justsystems.com/jp/info/js11001.html" }, { "name": "http://www.symantec.com/connect/blogs/targeted-attacks-2011-using-ichitaro-zero-day-vulnerability", "refsource": "MISC", "url": "http://www.symantec.com/connect/blogs/targeted-attacks-2011-using-ichitaro-zero-day-vulnerability" }, { "name": "JVN#87239473", "refsource": "JVN", "url": "http://jvn.jp/en/jp/JVN87239473/index.html" } ] } } } }, "cveMetadata": { "assignerOrgId": "ede6fdc4-6654-4307-a26d-3331c018e2ce", "assignerShortName": "jpcert", "cveId": "CVE-2011-1331", "datePublished": "2011-07-18T22:00:00", "dateReserved": "2011-03-09T00:00:00", "dateUpdated": "2024-08-06T22:21:34.200Z", "state": "PUBLISHED" }, "dataType": "CVE_RECORD", "dataVersion": "5.1" }
CVE-2013-0707 (GCVE-0-2013-0707)
Vulnerability from cvelistv5
Published
2013-03-01 02:00
Modified
2024-09-16 19:35
Severity ?
VLAI Severity ?
EPSS score ?
CWE
- n/a
Summary
Unspecified vulnerability in JustSystems Ichitaro 2006 and 2007, Ichitaro Government 2006 and 2007, Ichitaro Portable with oreplug, Hanako 2006 through 2013, Hanako Police, Hanako Police 3, and Hanako Police 2010 allows remote attackers to execute arbitrary code via a crafted file.
References
► | URL | Tags | |||||||||
---|---|---|---|---|---|---|---|---|---|---|---|
|
{ "containers": { "adp": [ { "providerMetadata": { "dateUpdated": "2024-08-06T14:33:05.603Z", "orgId": "af854a3a-2127-422b-91ae-364da2661108", "shortName": "CVE" }, "references": [ { "name": "JVNDB-2013-000015", "tags": [ "third-party-advisory", "x_refsource_JVNDB", "x_transferred" ], "url": "http://jvndb.jvn.jp/jvndb/JVNDB-2013-000015" }, { "name": "JVN#16817324", "tags": [ "third-party-advisory", "x_refsource_JVN", "x_transferred" ], "url": "http://jvn.jp/en/jp/JVN16817324/index.html" }, { "tags": [ "x_refsource_CONFIRM", "x_transferred" ], "url": "http://www.justsystems.com/jp/info/js13001.html" } ], "title": "CVE Program Container" } ], "cna": { "affected": [ { "product": "n/a", "vendor": "n/a", "versions": [ { "status": "affected", "version": "n/a" } ] } ], "descriptions": [ { "lang": "en", "value": "Unspecified vulnerability in JustSystems Ichitaro 2006 and 2007, Ichitaro Government 2006 and 2007, Ichitaro Portable with oreplug, Hanako 2006 through 2013, Hanako Police, Hanako Police 3, and Hanako Police 2010 allows remote attackers to execute arbitrary code via a crafted file." } ], "problemTypes": [ { "descriptions": [ { "description": "n/a", "lang": "en", "type": "text" } ] } ], "providerMetadata": { "dateUpdated": "2013-03-01T02:00:00Z", "orgId": "ede6fdc4-6654-4307-a26d-3331c018e2ce", "shortName": "jpcert" }, "references": [ { "name": "JVNDB-2013-000015", "tags": [ "third-party-advisory", "x_refsource_JVNDB" ], "url": "http://jvndb.jvn.jp/jvndb/JVNDB-2013-000015" }, { "name": "JVN#16817324", "tags": [ "third-party-advisory", "x_refsource_JVN" ], "url": "http://jvn.jp/en/jp/JVN16817324/index.html" }, { "tags": [ "x_refsource_CONFIRM" ], "url": "http://www.justsystems.com/jp/info/js13001.html" } ], "x_legacyV4Record": { "CVE_data_meta": { "ASSIGNER": "vultures@jpcert.or.jp", "ID": "CVE-2013-0707", "STATE": "PUBLIC" }, "affects": { "vendor": { "vendor_data": [ { "product": { "product_data": [ { "product_name": "n/a", "version": { "version_data": [ { "version_value": "n/a" } ] } } ] }, "vendor_name": "n/a" } ] } }, "data_format": "MITRE", "data_type": "CVE", "data_version": "4.0", "description": { "description_data": [ { "lang": "eng", "value": "Unspecified vulnerability in JustSystems Ichitaro 2006 and 2007, Ichitaro Government 2006 and 2007, Ichitaro Portable with oreplug, Hanako 2006 through 2013, Hanako Police, Hanako Police 3, and Hanako Police 2010 allows remote attackers to execute arbitrary code via a crafted file." } ] }, "problemtype": { "problemtype_data": [ { "description": [ { "lang": "eng", "value": "n/a" } ] } ] }, "references": { "reference_data": [ { "name": "JVNDB-2013-000015", "refsource": "JVNDB", "url": "http://jvndb.jvn.jp/jvndb/JVNDB-2013-000015" }, { "name": "JVN#16817324", "refsource": "JVN", "url": "http://jvn.jp/en/jp/JVN16817324/index.html" }, { "name": "http://www.justsystems.com/jp/info/js13001.html", "refsource": "CONFIRM", "url": "http://www.justsystems.com/jp/info/js13001.html" } ] } } } }, "cveMetadata": { "assignerOrgId": "ede6fdc4-6654-4307-a26d-3331c018e2ce", "assignerShortName": "jpcert", "cveId": "CVE-2013-0707", "datePublished": "2013-03-01T02:00:00Z", "dateReserved": "2012-12-28T00:00:00Z", "dateUpdated": "2024-09-16T19:35:50.586Z", "state": "PUBLISHED" }, "dataType": "CVE_RECORD", "dataVersion": "5.1" }
Vulnerability from fkie_nvd
Published
2013-06-18 18:55
Modified
2025-04-11 00:51
Severity ?
Summary
Unspecified vulnerability in JustSystems Ichitaro 2006 through 2013; Ichitaro Pro through 2; Ichitaro Government 6, 7, and 2006 through 2010; Ichitaro Portable with oreplug; Ichitaro Viewer; and Ichitaro JUST School through 2010 allows remote attackers to execute arbitrary code via a crafted document.
References
Impacted products
Vendor | Product | Version | |
---|---|---|---|
justsystems | ichitaro | 6 | |
justsystems | ichitaro | 7 | |
justsystems | ichitaro | 2006 | |
justsystems | ichitaro | 2006 | |
justsystems | ichitaro | 2007 | |
justsystems | ichitaro | 2007 | |
justsystems | ichitaro | 2008 | |
justsystems | ichitaro | 2008 | |
justsystems | ichitaro | 2009 | |
justsystems | ichitaro | 2009 | |
justsystems | ichitaro | 2010 | |
justsystems | ichitaro | 2010 | |
justsystems | ichitaro | 2011 | |
justsystems | ichitaro | 2012 | |
justsystems | ichitaro | 2013 | |
justsystems | ichitaro_just_school | - | |
justsystems | ichitaro_portable | - | |
justsystems | ichitaro_viewer | - |
{ "configurations": [ { "nodes": [ { "cpeMatch": [ { "criteria": "cpe:2.3:a:justsystems:ichitaro:6:-:government:*:*:*:*:*", "matchCriteriaId": "9056648E-34A1-471E-BB5A-FB50FB1C81DB", "vulnerable": true }, { "criteria": "cpe:2.3:a:justsystems:ichitaro:7:-:government:*:*:*:*:*", "matchCriteriaId": "71899280-4A70-42DF-9F82-B9B4D3210244", "vulnerable": true }, { "criteria": "cpe:2.3:a:justsystems:ichitaro:2006:*:*:*:*:*:*:*", "matchCriteriaId": "9E7E7611-56FC-4379-99FE-8D42046FA9C8", "vulnerable": true }, { "criteria": "cpe:2.3:a:justsystems:ichitaro:2006:-:government:*:*:*:*:*", "matchCriteriaId": "AA38365F-0FB9-4570-8A38-4FCC9AADA267", "vulnerable": true }, { "criteria": "cpe:2.3:a:justsystems:ichitaro:2007:*:*:*:*:*:*:*", "matchCriteriaId": "A749FA56-6DE2-48A4-902C-6EB7E6575BA3", "vulnerable": true }, { "criteria": "cpe:2.3:a:justsystems:ichitaro:2007:-:government:*:*:*:*:*", "matchCriteriaId": "6A5C721C-CA01-4C6A-AC7C-C07FC3A333D3", "vulnerable": true }, { "criteria": "cpe:2.3:a:justsystems:ichitaro:2008:*:*:*:*:*:*:*", "matchCriteriaId": "8B8FAFF2-94AD-4C8B-8B10-57651DEA6191", "vulnerable": true }, { "criteria": "cpe:2.3:a:justsystems:ichitaro:2008:-:government:*:*:*:*:*", "matchCriteriaId": "25F1AF4E-E4EC-4E66-B532-002A8512916F", "vulnerable": true }, { "criteria": "cpe:2.3:a:justsystems:ichitaro:2009:*:*:*:*:*:*:*", "matchCriteriaId": "12205BDB-6DD6-46B8-891B-E4EAAB8F3588", "vulnerable": true }, { "criteria": "cpe:2.3:a:justsystems:ichitaro:2009:-:government:*:*:*:*:*", "matchCriteriaId": "9BC34189-32FE-4C8E-A87E-731C622ECBC0", "vulnerable": true }, { "criteria": "cpe:2.3:a:justsystems:ichitaro:2010:*:*:*:*:*:*:*", "matchCriteriaId": "C9C3EDDB-E30F-45BA-94C4-5C917283971E", "vulnerable": true }, { "criteria": "cpe:2.3:a:justsystems:ichitaro:2010:-:government:*:*:*:*:*", "matchCriteriaId": "6881ACA2-0625-4E3F-8136-D20E627BFC9E", "vulnerable": true }, { "criteria": "cpe:2.3:a:justsystems:ichitaro:2011:*:*:*:*:*:*:*", "matchCriteriaId": "3A4975EC-E1DB-45C0-AFF6-C3E97F273332", "vulnerable": true }, { "criteria": "cpe:2.3:a:justsystems:ichitaro:2012:*:*:*:*:*:*:*", "matchCriteriaId": "5B8BE6AD-DE66-46BE-BD71-539920232A6D", "vulnerable": true }, { "criteria": "cpe:2.3:a:justsystems:ichitaro:2013:*:*:*:*:*:*:*", "matchCriteriaId": "42893B53-DD23-4F49-99C1-CB8A02595002", "vulnerable": true }, { "criteria": "cpe:2.3:a:justsystems:ichitaro_just_school:-:*:*:*:*:*:*:*", "matchCriteriaId": "E865201A-38FA-4D81-9FB4-227F6FE4AA43", "vulnerable": true }, { "criteria": "cpe:2.3:a:justsystems:ichitaro_portable:-:oreplug:*:*:*:*:*:*", "matchCriteriaId": "9DD0D5AC-5B8D-44FF-9E83-52F79775883C", "vulnerable": true }, { "criteria": "cpe:2.3:a:justsystems:ichitaro_viewer:-:*:*:*:*:*:*:*", "matchCriteriaId": "440528B7-1BFE-41D9-AC03-9F54F9730719", "vulnerable": true } ], "negate": false, "operator": "OR" } ] } ], "cveTags": [], "descriptions": [ { "lang": "en", "value": "Unspecified vulnerability in JustSystems Ichitaro 2006 through 2013; Ichitaro Pro through 2; Ichitaro Government 6, 7, and 2006 through 2010; Ichitaro Portable with oreplug; Ichitaro Viewer; and Ichitaro JUST School through 2010 allows remote attackers to execute arbitrary code via a crafted document." }, { "lang": "es", "value": "Vulnerabilidad sin especificar en JustSystems Ichitaro 2006 a la 2013; Ichitaro Pro a la 2; Ichitaro Government 6, 7, y 2006 a la 2010; Ichitaro Portable con oreplug; Ichitaro Viewer; y Ichitaro JUST School a la 2010, permite a atacantes remotos ejecutar c\u00f3digo arbitrario a trav\u00e9s de un documento manipulado." } ], "id": "CVE-2013-3644", "lastModified": "2025-04-11T00:51:21.963", "metrics": { "cvssMetricV2": [ { "acInsufInfo": false, "baseSeverity": "HIGH", "cvssData": { "accessComplexity": "LOW", "accessVector": "NETWORK", "authentication": "NONE", "availabilityImpact": "COMPLETE", "baseScore": 10.0, "confidentialityImpact": "COMPLETE", "integrityImpact": "COMPLETE", "vectorString": "AV:N/AC:L/Au:N/C:C/I:C/A:C", "version": "2.0" }, "exploitabilityScore": 10.0, "impactScore": 10.0, "obtainAllPrivilege": false, "obtainOtherPrivilege": false, "obtainUserPrivilege": false, "source": "nvd@nist.gov", "type": "Primary", "userInteractionRequired": false } ] }, "published": "2013-06-18T18:55:01.037", "references": [ { "source": "vultures@jpcert.or.jp", "url": "http://jvn.jp/en/jp/JVN98712361/index.html" }, { "source": "vultures@jpcert.or.jp", "url": "http://jvndb.jvn.jp/jvndb/JVNDB-2013-000058" }, { "source": "vultures@jpcert.or.jp", "url": "http://www.justsystems.com/jp/info/js13002.html" }, { "source": "af854a3a-2127-422b-91ae-364da2661108", "url": "http://jvn.jp/en/jp/JVN98712361/index.html" }, { "source": "af854a3a-2127-422b-91ae-364da2661108", "url": "http://jvndb.jvn.jp/jvndb/JVNDB-2013-000058" }, { "source": "af854a3a-2127-422b-91ae-364da2661108", "url": "http://www.justsystems.com/jp/info/js13002.html" } ], "sourceIdentifier": "vultures@jpcert.or.jp", "vulnStatus": "Deferred", "weaknesses": [ { "description": [ { "lang": "en", "value": "NVD-CWE-noinfo" } ], "source": "nvd@nist.gov", "type": "Primary" } ] }
Vulnerability from fkie_nvd
Published
2011-07-18 22:55
Modified
2025-04-11 00:51
Severity ?
Summary
JustSystems Ichitaro 2005 through 2011, Ichitaro Government 6, Ichitaro Government 2006 through 2010, Ichitaro Portable, Ichitaro Pro, and Ichitaro Viewer allow remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via a crafted document, as exploited in the wild in early 2011.
References
Impacted products
Vendor | Product | Version | |
---|---|---|---|
justsystems | ichitaro | 6 | |
justsystems | ichitaro | 2005 | |
justsystems | ichitaro | 2006 | |
justsystems | ichitaro | 2006 | |
justsystems | ichitaro | 2007 | |
justsystems | ichitaro | 2007 | |
justsystems | ichitaro | 2008 | |
justsystems | ichitaro | 2008 | |
justsystems | ichitaro | 2009 | |
justsystems | ichitaro | 2009 | |
justsystems | ichitaro | 2010 | |
justsystems | ichitaro | 2010 | |
justsystems | ichitaro | 2011 | |
justsystems | ichitaro_portable | * | |
justsystems | ichitaro_pro | * | |
justsystems | ichitaro_viewer | * | |
justsystems | ichitaro_viewer | 5.1.3.0 | |
justsystems | ichitaro_viewer | 19.0.1.0 | |
justsystems | ichitaro_viewer | 19.0.2.0 | |
justsystems | ichitaro_viewer | 19.0.3.0 | |
justsystems | ichitaro_viewer | 20.0.2.0 |
{ "configurations": [ { "nodes": [ { "cpeMatch": [ { "criteria": "cpe:2.3:a:justsystems:ichitaro:6:-:government:*:*:*:*:*", "matchCriteriaId": "9056648E-34A1-471E-BB5A-FB50FB1C81DB", "vulnerable": true }, { "criteria": "cpe:2.3:a:justsystems:ichitaro:2005:*:*:*:*:*:*:*", "matchCriteriaId": "471FA5F8-8EC2-4FEB-93E0-B838F81BD472", "vulnerable": true }, { "criteria": "cpe:2.3:a:justsystems:ichitaro:2006:*:*:*:*:*:*:*", "matchCriteriaId": "9E7E7611-56FC-4379-99FE-8D42046FA9C8", "vulnerable": true }, { "criteria": "cpe:2.3:a:justsystems:ichitaro:2006:-:government:*:*:*:*:*", "matchCriteriaId": "AA38365F-0FB9-4570-8A38-4FCC9AADA267", "vulnerable": true }, { "criteria": "cpe:2.3:a:justsystems:ichitaro:2007:*:*:*:*:*:*:*", "matchCriteriaId": "A749FA56-6DE2-48A4-902C-6EB7E6575BA3", "vulnerable": true }, { "criteria": "cpe:2.3:a:justsystems:ichitaro:2007:-:government:*:*:*:*:*", "matchCriteriaId": "6A5C721C-CA01-4C6A-AC7C-C07FC3A333D3", "vulnerable": true }, { "criteria": "cpe:2.3:a:justsystems:ichitaro:2008:*:*:*:*:*:*:*", "matchCriteriaId": "8B8FAFF2-94AD-4C8B-8B10-57651DEA6191", "vulnerable": true }, { "criteria": "cpe:2.3:a:justsystems:ichitaro:2008:-:government:*:*:*:*:*", "matchCriteriaId": "25F1AF4E-E4EC-4E66-B532-002A8512916F", "vulnerable": true }, { "criteria": "cpe:2.3:a:justsystems:ichitaro:2009:*:*:*:*:*:*:*", "matchCriteriaId": "12205BDB-6DD6-46B8-891B-E4EAAB8F3588", "vulnerable": true }, { "criteria": "cpe:2.3:a:justsystems:ichitaro:2009:-:government:*:*:*:*:*", "matchCriteriaId": "9BC34189-32FE-4C8E-A87E-731C622ECBC0", "vulnerable": true }, { "criteria": "cpe:2.3:a:justsystems:ichitaro:2010:*:*:*:*:*:*:*", "matchCriteriaId": "C9C3EDDB-E30F-45BA-94C4-5C917283971E", "vulnerable": true }, { "criteria": "cpe:2.3:a:justsystems:ichitaro:2010:-:government:*:*:*:*:*", "matchCriteriaId": "6881ACA2-0625-4E3F-8136-D20E627BFC9E", "vulnerable": true }, { "criteria": "cpe:2.3:a:justsystems:ichitaro:2011:*:*:*:*:*:*:*", "matchCriteriaId": "3A4975EC-E1DB-45C0-AFF6-C3E97F273332", "vulnerable": true }, { "criteria": "cpe:2.3:a:justsystems:ichitaro_portable:*:*:*:*:*:*:*:*", "matchCriteriaId": "EF040552-87C3-40B5-AA54-950207AB387C", "vulnerable": true }, { "criteria": "cpe:2.3:a:justsystems:ichitaro_pro:*:*:*:*:*:*:*:*", "matchCriteriaId": "7B6622EC-6ACF-4A02-BDF8-70C0EFD4471A", "vulnerable": true }, { "criteria": "cpe:2.3:a:justsystems:ichitaro_viewer:*:*:*:*:*:*:*:*", "matchCriteriaId": "6FB0BAF8-1958-4CA5-801F-BE36FA327726", "vulnerable": true }, { "criteria": "cpe:2.3:a:justsystems:ichitaro_viewer:5.1.3.0:*:*:*:*:*:*:*", "matchCriteriaId": "B34749C6-8E19-47B2-B5F7-0F98B122FCE1", "vulnerable": true }, { "criteria": "cpe:2.3:a:justsystems:ichitaro_viewer:19.0.1.0:*:*:*:*:*:*:*", "matchCriteriaId": "7D726C33-139F-4514-BDFC-FE8F046B47CF", "vulnerable": true }, { "criteria": "cpe:2.3:a:justsystems:ichitaro_viewer:19.0.2.0:*:*:*:*:*:*:*", "matchCriteriaId": "FF6BBB43-6E50-4E6F-80A3-217A431D9A6A", "vulnerable": true }, { "criteria": "cpe:2.3:a:justsystems:ichitaro_viewer:19.0.3.0:*:*:*:*:*:*:*", "matchCriteriaId": "6A008907-514E-4924-953C-3F09329CF26A", "vulnerable": true }, { "criteria": "cpe:2.3:a:justsystems:ichitaro_viewer:20.0.2.0:*:*:*:*:*:*:*", "matchCriteriaId": "52CAFFC5-453F-49DD-8A71-8FB98C045A4C", "vulnerable": true } ], "negate": false, "operator": "OR" } ] } ], "cveTags": [], "descriptions": [ { "lang": "en", "value": "JustSystems Ichitaro 2005 through 2011, Ichitaro Government 6, Ichitaro Government 2006 through 2010, Ichitaro Portable, Ichitaro Pro, and Ichitaro Viewer allow remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via a crafted document, as exploited in the wild in early 2011." }, { "lang": "es", "value": "JustSystems Ichitaro v2005 hasta v2011, Ichitaro Government v6, Ichitaro Gobierno de v2006 a v2010, Ichitaro port\u00e1til, Ichitaro Pro, y el Visor de Ichitaro permite a atacantes remotos ejecutar c\u00f3digo arbitrario o causar una denegaci\u00f3n de servicio (corrupci\u00f3n de memoria heap ) a trav\u00e9s de un documento manipulado, como se exploto a principios de 2011." } ], "id": "CVE-2011-1331", "lastModified": "2025-04-11T00:51:21.963", "metrics": { "cvssMetricV2": [ { "acInsufInfo": false, "baseSeverity": "HIGH", "cvssData": { "accessComplexity": "MEDIUM", "accessVector": "NETWORK", "authentication": "NONE", "availabilityImpact": "COMPLETE", "baseScore": 9.3, "confidentialityImpact": "COMPLETE", "integrityImpact": "COMPLETE", "vectorString": "AV:N/AC:M/Au:N/C:C/I:C/A:C", "version": "2.0" }, "exploitabilityScore": 8.6, "impactScore": 10.0, "obtainAllPrivilege": false, "obtainOtherPrivilege": false, "obtainUserPrivilege": false, "source": "nvd@nist.gov", "type": "Primary", "userInteractionRequired": true } ] }, "published": "2011-07-18T22:55:01.033", "references": [ { "source": "vultures@jpcert.or.jp", "url": "http://jvn.jp/en/jp/JVN87239473/index.html" }, { "source": "vultures@jpcert.or.jp", "url": "http://jvndb.jvn.jp/jvndb/JVNDB-2011-000043" }, { "source": "vultures@jpcert.or.jp", "tags": [ "Vendor Advisory" ], "url": "http://secunia.com/advisories/44956" }, { "source": "vultures@jpcert.or.jp", "tags": [ "Patch", "Vendor Advisory" ], "url": "http://www.justsystems.com/jp/info/js11001.html" }, { "source": "vultures@jpcert.or.jp", "url": "http://www.securityfocus.com/bid/48283" }, { "source": "vultures@jpcert.or.jp", "tags": [ "Exploit" ], "url": "http://www.symantec.com/connect/blogs/targeted-attacks-2011-using-ichitaro-zero-day-vulnerability" }, { "source": "vultures@jpcert.or.jp", "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/68072" }, { "source": "af854a3a-2127-422b-91ae-364da2661108", "url": "http://jvn.jp/en/jp/JVN87239473/index.html" }, { "source": "af854a3a-2127-422b-91ae-364da2661108", "url": "http://jvndb.jvn.jp/jvndb/JVNDB-2011-000043" }, { "source": "af854a3a-2127-422b-91ae-364da2661108", "tags": [ "Vendor Advisory" ], "url": "http://secunia.com/advisories/44956" }, { "source": "af854a3a-2127-422b-91ae-364da2661108", "tags": [ "Patch", "Vendor Advisory" ], "url": "http://www.justsystems.com/jp/info/js11001.html" }, { "source": "af854a3a-2127-422b-91ae-364da2661108", "url": "http://www.securityfocus.com/bid/48283" }, { "source": "af854a3a-2127-422b-91ae-364da2661108", "tags": [ "Exploit" ], "url": "http://www.symantec.com/connect/blogs/targeted-attacks-2011-using-ichitaro-zero-day-vulnerability" }, { "source": "af854a3a-2127-422b-91ae-364da2661108", "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/68072" } ], "sourceIdentifier": "vultures@jpcert.or.jp", "vulnStatus": "Deferred", "weaknesses": [ { "description": [ { "lang": "en", "value": "CWE-119" } ], "source": "nvd@nist.gov", "type": "Primary" } ] }
Vulnerability from fkie_nvd
Published
2013-03-01 05:40
Modified
2025-04-11 00:51
Severity ?
Summary
Unspecified vulnerability in JustSystems Ichitaro 2006 and 2007, Ichitaro Government 2006 and 2007, Ichitaro Portable with oreplug, Hanako 2006 through 2013, Hanako Police, Hanako Police 3, and Hanako Police 2010 allows remote attackers to execute arbitrary code via a crafted file.
References
Impacted products
Vendor | Product | Version | |
---|---|---|---|
justsystems | hanako | 2006 | |
justsystems | hanako | 2007 | |
justsystems | hanako | 2008 | |
justsystems | hanako | 2009 | |
justsystems | hanako | 2010 | |
justsystems | hanako | 2011 | |
justsystems | hanako | 2012 | |
justsystems | hanako | 2013 | |
justsystems | hanako_police | - | |
justsystems | hanako_police | 2010 | |
justsystems | hanako_police3 | - | |
justsystems | ichitaro | 2006 | |
justsystems | ichitaro | 2006 | |
justsystems | ichitaro | 2007 | |
justsystems | ichitaro | 2007 | |
justsystems | ichitaro_portable | - |
{ "configurations": [ { "nodes": [ { "cpeMatch": [ { "criteria": "cpe:2.3:a:justsystems:hanako:2006:*:*:*:*:*:*:*", "matchCriteriaId": "B99AFDF7-D3AE-4565-9AE2-85642724DC00", "vulnerable": true }, { "criteria": "cpe:2.3:a:justsystems:hanako:2007:*:*:*:*:*:*:*", "matchCriteriaId": "934D152B-FD10-418D-8C08-28BD45442B1D", "vulnerable": true }, { "criteria": "cpe:2.3:a:justsystems:hanako:2008:*:*:*:*:*:*:*", "matchCriteriaId": "BAAA97A6-E654-4882-AFA5-6D5B404672D0", "vulnerable": true }, { "criteria": "cpe:2.3:a:justsystems:hanako:2009:*:*:*:*:*:*:*", "matchCriteriaId": "5BE91EAC-860C-4E31-8DCE-4F7092B12250", "vulnerable": true }, { "criteria": "cpe:2.3:a:justsystems:hanako:2010:*:*:*:*:*:*:*", "matchCriteriaId": "0BCBC102-5EBD-4427-B741-40DF5EEB1AEA", "vulnerable": true }, { "criteria": "cpe:2.3:a:justsystems:hanako:2011:*:*:*:*:*:*:*", "matchCriteriaId": "2F1615FC-6D1D-4333-85E3-3C77F23EC2E2", "vulnerable": true }, { "criteria": "cpe:2.3:a:justsystems:hanako:2012:*:*:*:*:*:*:*", "matchCriteriaId": "D1D9903B-4F6F-4D25-A5EB-3D4C5791B2F5", "vulnerable": true }, { "criteria": "cpe:2.3:a:justsystems:hanako:2013:*:*:*:*:*:*:*", "matchCriteriaId": "289D3E55-483B-407F-A1C9-5DCF21E14F6E", "vulnerable": true }, { "criteria": "cpe:2.3:a:justsystems:hanako_police:-:*:*:*:*:*:*:*", "matchCriteriaId": "8F075EDD-D4AE-48A1-AD62-D1F4E9FD2E65", "vulnerable": true }, { "criteria": "cpe:2.3:a:justsystems:hanako_police:2010:*:*:*:*:*:*:*", "matchCriteriaId": "361E77E7-DD90-4E3D-BFA7-3C48C7DED979", "vulnerable": true }, { "criteria": "cpe:2.3:a:justsystems:hanako_police3:-:*:*:*:*:*:*:*", "matchCriteriaId": "66B9E254-5474-4615-BDBA-A9A8B2D009F8", "vulnerable": true }, { "criteria": "cpe:2.3:a:justsystems:ichitaro:2006:*:*:*:*:*:*:*", "matchCriteriaId": "9E7E7611-56FC-4379-99FE-8D42046FA9C8", "vulnerable": true }, { "criteria": "cpe:2.3:a:justsystems:ichitaro:2006:-:government:*:*:*:*:*", "matchCriteriaId": "AA38365F-0FB9-4570-8A38-4FCC9AADA267", "vulnerable": true }, { "criteria": "cpe:2.3:a:justsystems:ichitaro:2007:*:*:*:*:*:*:*", "matchCriteriaId": "A749FA56-6DE2-48A4-902C-6EB7E6575BA3", "vulnerable": true }, { "criteria": "cpe:2.3:a:justsystems:ichitaro:2007:-:government:*:*:*:*:*", "matchCriteriaId": "6A5C721C-CA01-4C6A-AC7C-C07FC3A333D3", "vulnerable": true }, { "criteria": "cpe:2.3:a:justsystems:ichitaro_portable:-:oreplug:*:*:*:*:*:*", "matchCriteriaId": "9DD0D5AC-5B8D-44FF-9E83-52F79775883C", "vulnerable": true } ], "negate": false, "operator": "OR" } ] } ], "cveTags": [], "descriptions": [ { "lang": "en", "value": "Unspecified vulnerability in JustSystems Ichitaro 2006 and 2007, Ichitaro Government 2006 and 2007, Ichitaro Portable with oreplug, Hanako 2006 through 2013, Hanako Police, Hanako Police 3, and Hanako Police 2010 allows remote attackers to execute arbitrary code via a crafted file." }, { "lang": "es", "value": "Vulnerabilidad sin especificar en JustSystems Ichitaro v2006 y 2007, el Gobierno Ichitaro 2006 y 2007, Ichitaro port\u00e1til con oreplug, Hanako 2006 hasta 2013, Hanako Polic\u00eda, Polic\u00eda Hanako 3 y Hanako Police 2010 permite a atacantes remotos ejecutar c\u00f3digo arbitrario a trav\u00e9s de un archivo manipulado." } ], "id": "CVE-2013-0707", "lastModified": "2025-04-11T00:51:21.963", "metrics": { "cvssMetricV2": [ { "acInsufInfo": false, "baseSeverity": "HIGH", "cvssData": { "accessComplexity": "MEDIUM", "accessVector": "NETWORK", "authentication": "NONE", "availabilityImpact": "COMPLETE", "baseScore": 9.3, "confidentialityImpact": "COMPLETE", "integrityImpact": "COMPLETE", "vectorString": "AV:N/AC:M/Au:N/C:C/I:C/A:C", "version": "2.0" }, "exploitabilityScore": 8.6, "impactScore": 10.0, "obtainAllPrivilege": false, "obtainOtherPrivilege": false, "obtainUserPrivilege": false, "source": "nvd@nist.gov", "type": "Primary", "userInteractionRequired": true } ] }, "published": "2013-03-01T05:40:17.647", "references": [ { "source": "vultures@jpcert.or.jp", "url": "http://jvn.jp/en/jp/JVN16817324/index.html" }, { "source": "vultures@jpcert.or.jp", "url": "http://jvndb.jvn.jp/jvndb/JVNDB-2013-000015" }, { "source": "vultures@jpcert.or.jp", "tags": [ "Patch", "Vendor Advisory" ], "url": "http://www.justsystems.com/jp/info/js13001.html" }, { "source": "af854a3a-2127-422b-91ae-364da2661108", "url": "http://jvn.jp/en/jp/JVN16817324/index.html" }, { "source": "af854a3a-2127-422b-91ae-364da2661108", "url": "http://jvndb.jvn.jp/jvndb/JVNDB-2013-000015" }, { "source": "af854a3a-2127-422b-91ae-364da2661108", "tags": [ "Patch", "Vendor Advisory" ], "url": "http://www.justsystems.com/jp/info/js13001.html" } ], "sourceIdentifier": "vultures@jpcert.or.jp", "vulnStatus": "Deferred", "weaknesses": [ { "description": [ { "lang": "en", "value": "NVD-CWE-noinfo" } ], "source": "nvd@nist.gov", "type": "Primary" } ] }