PT-2007-7281 · Justsystems · Justsystems Ichitaro

Published

2007-12-18

·

Updated

2017-08-08

·

CVE-2007-6436

CVSS v2.0

9.3

High

VectorAV:N/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions JustSystems Ichitaro versions 2005 through 2007
Description A stack-based buffer overflow issue in the JSGCI.DLL component allows user-assisted remote attackers to execute arbitrary code via a crafted document. This issue was actively exploited in December 2007 by the Tarodrop.F trojan.
Recommendations For JustSystems Ichitaro versions 2005 through 2007, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2007-6436

Affected Products

Justsystems Ichitaro