PT-2014-7853 · Justsystems · Justsystems Ichitaro 2012 Shou+7
Published
2014-11-26
·
Updated
2015-02-24
·
CVE-2014-7247
CVSS v2.0
10
High
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
JustSystems Ichitaro versions 2008 through 2011
JustSystems Ichitaro Government versions 6, 7, 2008, 2009, and 2010
JustSystems Ichitaro Pro
JustSystems Ichitaro Pro 2
JustSystems Ichitaro 2011 Sou
JustSystems Ichitaro 2012 Shou
JustSystems Ichitaro 2013 Gen
JustSystems Ichitaro 2014 Tetsu
Description
The issue allows remote attackers to execute arbitrary code via a crafted file.
Recommendations
For JustSystems Ichitaro versions 2008 through 2011, avoid using the software to open crafted files until a fix is available.
For JustSystems Ichitaro Government versions 6, 7, 2008, 2009, and 2010, restrict access to the software to minimize the risk of exploitation.
For JustSystems Ichitaro Pro, JustSystems Ichitaro Pro 2, JustSystems Ichitaro 2011 Sou, JustSystems Ichitaro 2012 Shou, JustSystems Ichitaro 2013 Gen, and JustSystems Ichitaro 2014 Tetsu, consider disabling the software until a patch is available.
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Justsystems Ichitaro
Justsystems Ichitaro 2011 Sou
Justsystems Ichitaro 2012 Shou
Justsystems Ichitaro 2013 Gen
Justsystems Ichitaro 2014 Tetsu
Justsystems Ichitaro Government
Justsystems Ichitaro Pro
Justsystems Ichitaro Pro 2