CVE-2009-4738
Summary
| CVE | CVE-2009-4738 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2013-01-18 23:55:00 UTC |
| Updated | 2013-01-29 05:00:00 UTC |
| Description | Unspecified vulnerability in JustSystems Corporation ATOK 2006 through 2009 and ATOK flat-rate service, and Just Smile 4 with the ATOK Smile module, allows physically proximate users to bypass the screen lock and execute commands with system privileges via unknown vectors related to "launching external applications." |
Risk And Classification
Problem Types: NVD-CWE-noinfo
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Justsystems | Atok | 2006 | - | windows | All |
| Application | Justsystems | Atok | 2007 | - | windows | All |
| Application | Justsystems | Atok | 2008 | - | windows | All |
| Application | Justsystems | Atok | 2009 | - | windows | All |
| Application | Justsystems | Atok | 2006 | - | windows | All |
| Application | Justsystems | Atok | 2007 | - | windows | All |
| Application | Justsystems | Atok | 2008 | - | windows | All |
| Application | Justsystems | Atok | 2009 | - | windows | All |
| Application | Justsystems | Atok Flat-rate Service | - | All | All | All |
| Application | Justsystems | Atok Flat-rate Service | - | All | All | All |
| Application | Justsystems | Just Smile | 4 | All | All | All |
| Application | Justsystems | Just Smile | 4 | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| [JS09003]ATOKの脆弱性を悪用した不正なプログラムの実行危険性について | お知らせ | ジャストシステム | CONFIRM | www.justsystems.com | Patch, Vendor Advisory |
| JustSystems ATOK Screen Lock Security Bypass Vulnerability - Secunia.com | SECUNIA | secunia.com | Vendor Advisory |
| JVN#57040664 ATOK screen lock bypass vulnerability | JVN | jvn.jp | |
| JVNDB-2009-000057 | JVNDB | jvndb.jvn.jp | |
| JustSystems ATOK Screen Lock Local Privilege Escalation Vulnerability | BID | www.securityfocus.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.