JVN#17293765Third-party advisory
http://jvn.jp/en/jp/JVN17293765/index.html CVE-2010-2152
JustSystems Ichitaro/Government/Just School Product Character Attribute Processing Vulnerability
Record summary
CVE-2010-2152 has a selected CVSS score of 9.3.
Description
Unspecified vulnerability in JustSystems Ichitaro 2004 through 2009, Ichitaro Government 2006 through 2009, and Just School 2008 and 2009 allows remote attackers to execute arbitrary code via unknown vectors related to "product character attribute processing" for a document.
Description source: CVE List
Exploitation context
Known exploitation
- VulnCheck KEV
- Listed · May 1, 2020 · VulnCheck
- Reported exploitation
- Observed · VulnCheck
Affected products and versions
1| Product | Source | Version range | Status |
|---|---|---|---|
ichitaroBrowse justsystems / ichitaro | VulnCheck | Version data not supplied | |
References
10JVNDB-2010-000024Third-party advisory
http://jvndb.jvn.jp/ja/contents/2010/JVNDB-2010-000024.html 65050vdb entry
http://osvdb.org/65050 40008Third-party advisory
http://secunia.com/advisories/40008 ipa.go.jp
http://www.ipa.go.jp/about/press/20100601.html justsystems.comConfirmation
http://www.justsystems.com/jp/info/js10002.html 40472vdb entry
http://www.securityfocus.com/bid/40472 ADV-2010-1283vdb entry
http://www.vupen.com/english/advisories/2010/1283 ichitaro-attributes-code-execution(59037)vdb entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/59037 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2010-2152