7.6
CVSSv2

CVE-2014-2003

Published: 16/06/2014 Updated: 16/06/2014
CVSS v2 Base Score: 7.6 | Impact Score: 10 | Exploitability Score: 4.9
VMScore: 676
Vector: AV:N/AC:H/Au:N/C:C/I:C/A:C

Vulnerability Summary

JustSystems JUST Online Update, as used in Ichitaro through 2014 and other products, does not properly validate signatures of update modules, which allows remote malicious users to spoof modules and execute arbitrary code via a crafted signature.

Vulnerable Product Search on Vulmon Subscribe to Product

justsystems ichitaro

justsystems ichitaro 10

justsystems ichitaro 11

justsystems ichitaro 2009

justsystems ichitaro 2010

justsystems ichitaro 2011

justsystems ichitaro 2006

justsystems ichitaro 2007

justsystems ichitaro 12

justsystems ichitaro 2004

justsystems ichitaro 2008

justsystems ichitaro 2013

justsystems just online update -

justsystems ichitaro 13

justsystems ichitaro 2005

justsystems ichitaro 2012