CVE-2013-0707
Summary
| CVE | CVE-2013-0707 |
|---|---|
| State | PUBLISHED |
| Assigner | jpcert |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2013-03-01 05:40:17 UTC |
| Updated | 2026-04-29 01:13:23 UTC |
| Description | Unspecified vulnerability in JustSystems Ichitaro 2006 and 2007, Ichitaro Government 2006 and 2007, Ichitaro Portable with oreplug, Hanako 2006 through 2013, Hanako Police, Hanako Police 3, and Hanako Police 2010 allows remote attackers to execute arbitrary code via a crafted file. |
Risk And Classification
Primary CVSS: v2.0 9.3 from [email protected]
AV:N/AC:M/Au:N/C:C/I:C/A:C
Problem Types: NVD-CWE-noinfo | n/a
CVSS v2.0 Breakdown
Access Vector
NetworkAccess Complexity
MediumAuthentication
NoneConfidentiality
CompleteIntegrity
CompleteAvailability
CompleteAV:N/AC:M/Au:N/C:C/I:C/A:C
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Justsystems | Hanako | 2006 | All | All | All |
| Application | Justsystems | Hanako | 2007 | All | All | All |
| Application | Justsystems | Hanako | 2008 | All | All | All |
| Application | Justsystems | Hanako | 2009 | All | All | All |
| Application | Justsystems | Hanako | 2010 | All | All | All |
| Application | Justsystems | Hanako | 2011 | All | All | All |
| Application | Justsystems | Hanako | 2012 | All | All | All |
| Application | Justsystems | Hanako | 2013 | All | All | All |
| Application | Justsystems | Hanako Police | - | All | All | All |
| Application | Justsystems | Hanako Police | 2010 | All | All | All |
| Application | Justsystems | Hanako Police3 | - | All | All | All |
| Application | Justsystems | Ichitaro | 2006 | All | All | All |
| Application | Justsystems | Ichitaro | 2006 | - | government | All |
| Application | Justsystems | Ichitaro | 2007 | All | All | All |
| Application | Justsystems | Ichitaro | 2007 | - | government | All |
| Application | Justsystems | Ichitaro Portable | - | oreplug | All | All |
Vendor Declared Affected Products
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| jvndb.jvn.jp/jvndb/JVNDB-2013-000015 | af854a3a-2127-422b-91ae-364da2661108 | jvndb.jvn.jp | |
| [JS13001]一太郎・花子の脆弱性を悪用した不正なプログラムの実行危険性について (update: 2013.3.21) | お知らせ | ジャストシステム | af854a3a-2127-422b-91ae-364da2661108 | www.justsystems.com | Patch, Vendor Advisory |
| JVN#16817324: Multiple JustSystems products vulnerable to arbitrary code execution | af854a3a-2127-422b-91ae-364da2661108 | jvn.jp | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.