Untrusted search path vulnerability in Hanako 2017, Hanako 2016, Hanako 2015, Hanako Pro 3, JUST Office 3 [Standard], JUST Office 3 [Eco Print Package], JUST Office 3 & Tri-De DataProtect Package, JUST Government 3, JUST Jump Class 2, JUST Frontier 3, JUST School 6 Premium, Hanako Police 5, JUST Police 3, Hanako 2017 trial version allows remote attackers to gain privileges via a Trojan horse DLL in an unspecified directory.
References
Link | Resource |
---|---|
https://jvn.jp/en/jp/JVN54268888/index.html | Third Party Advisory VDB Entry |
https://www.justsystems.com/jp/info/js17002.html | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2017-04-28 16:59
Updated : 2024-02-04 19:11
NVD link : CVE-2017-2154
Mitre link : CVE-2017-2154
CVE.ORG link : CVE-2017-2154
JSON object : View
Products Affected
justsystems
- just_police
- hanako
- hanako_pro
- just_government
- just_jump_class
- just_office
- just_school
- hanako_police
- just_frontier
CWE
CWE-20
Improper Input Validation