{"api_version":"1","generated_at":"2026-07-24T00:58:05+00:00","cve":"CVE-2016-4902","urls":{"html":"https://cve.report/CVE-2016-4902","api":"https://cve.report/api/cve/CVE-2016-4902.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2016-4902","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2016-4902"},"summary":{"title":"CVE-2016-4902","description":"Untrusted search path vulnerability in The Public Certification Service for Individuals \"The JPKI user's software (for Windows 7 and later)\" Ver3.0.1 and earlier, The Public Certification Service for Individuals \"The JPKI user's software (for Windows Vista)\" Ver3.0.1 and earlier and The Public Certification Service for Individuals \"The JPKI user's software\" Ver2.6 and earlier allows remote attackers to gain privileges via a Trojan horse DLL in an unspecified directory.","state":"PUBLISHED","assigner":"jpcert","published_at":"2017-06-09 16:29:00","updated_at":"2025-04-20 01:37:25"},"problem_types":["CWE-426","Untrusted search path vulnerability"],"metrics":[{"version":"3.0","source":"nvd@nist.gov","type":"Primary","score":"7.8","severity":"HIGH","vector":"CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","data":{"version":"3.0","vectorString":"CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","baseScore":7.8,"baseSeverity":"HIGH","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"REQUIRED","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH"}},{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"9.3","severity":"","vector":"AV:N/AC:M/Au:N/C:C/I:C/A:C","data":{"version":"2.0","vectorString":"AV:N/AC:M/Au:N/C:C/I:C/A:C","baseScore":9.3,"accessVector":"NETWORK","accessComplexity":"MEDIUM","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"}}],"references":[{"url":"http://www.securityfocus.com/bid/94087","name":"http://www.securityfocus.com/bid/94087","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","VDB Entry"],"title":"JPKI Client Software CVE-2016-4902 DLL Loading Remote Code Execution Vulnerability","mime":"text/html","httpstatus":"200","archivestatus":"0"},{"url":"https://jvn.jp/en/jp/JVN91002412/index.html","name":"https://jvn.jp/en/jp/JVN91002412/index.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","VDB Entry"],"title":"JVN#91002412: The installer of The Public Certification Service for Individuals \"The JPKI user's software\" may insecurely load Dynamic Link Libraries","mime":"text/xml","httpstatus":"200","archivestatus":"200"},{"url":"https://www.cve.org/CVERecord?id=CVE-2016-4902","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2016-4902","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"Japan Agency for Local Authority Information Systems","product":"The Public Certification Service for Individuals \"The JPKI user's software (for Windows 7 and later)\"","version":"affected Ver3.0.1 and earlier","platforms":[]},{"source":"CNA","vendor":"Japan Agency for Local Authority Information Systems","product":"The Public Certification Service for Individuals \"The JPKI user's software (for Windows Vista)\"","version":"affected Ver3.0.1 and earlier","platforms":[]},{"source":"CNA","vendor":"Japan Agency for Local Authority Information Systems","product":"The Public Certification Service for Individuals \"The JPKI user's software\"","version":"affected Ver2.6 and earlier","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2016","cve_id":"4902","vulnerable":"1","versionEndIncluding":"2.6","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"jpki","cpe5":"the_public_certification_service_for_individuals","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2016","cve_id":"4902","vulnerable":"1","versionEndIncluding":"3.0.1","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"jpki","cpe5":"the_public_certification_service_for_individuals_for_windows_7","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2016","cve_id":"4902","vulnerable":"1","versionEndIncluding":"3.0.1","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"jpki","cpe5":"the_public_certification_service_for_individuals_for_windows_vista","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-06T00:46:39.972Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"name":"JVN#91002412","tags":["third-party-advisory","x_refsource_JVN","x_transferred"],"url":"https://jvn.jp/en/jp/JVN91002412/index.html"},{"name":"94087","tags":["vdb-entry","x_refsource_BID","x_transferred"],"url":"http://www.securityfocus.com/bid/94087"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"The Public Certification Service for Individuals \"The JPKI user's software (for Windows 7 and later)\"","vendor":"Japan Agency for Local Authority Information Systems","versions":[{"status":"affected","version":"Ver3.0.1 and earlier"}]},{"product":"The Public Certification Service for Individuals \"The JPKI user's software (for Windows Vista)\"","vendor":"Japan Agency for Local Authority Information Systems","versions":[{"status":"affected","version":"Ver3.0.1 and earlier"}]},{"product":"The Public Certification Service for Individuals \"The JPKI user's software\"","vendor":"Japan Agency for Local Authority Information Systems","versions":[{"status":"affected","version":"Ver2.6 and earlier"}]}],"datePublic":"2016-11-01T00:00:00.000Z","descriptions":[{"lang":"en","value":"Untrusted search path vulnerability in The Public Certification Service for Individuals \"The JPKI user's software (for Windows 7 and later)\" Ver3.0.1 and earlier, The Public Certification Service for Individuals \"The JPKI user's software (for Windows Vista)\" Ver3.0.1 and earlier and The Public Certification Service for Individuals \"The JPKI user's software\" Ver2.6 and earlier allows remote attackers to gain privileges via a Trojan horse DLL in an unspecified directory."}],"problemTypes":[{"descriptions":[{"description":"Untrusted search path vulnerability","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2017-06-12T09:57:01.000Z","orgId":"ede6fdc4-6654-4307-a26d-3331c018e2ce","shortName":"jpcert"},"references":[{"name":"JVN#91002412","tags":["third-party-advisory","x_refsource_JVN"],"url":"https://jvn.jp/en/jp/JVN91002412/index.html"},{"name":"94087","tags":["vdb-entry","x_refsource_BID"],"url":"http://www.securityfocus.com/bid/94087"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"vultures@jpcert.or.jp","ID":"CVE-2016-4902","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"The Public Certification Service for Individuals \"The JPKI user's software (for Windows 7 and later)\"","version":{"version_data":[{"version_value":"Ver3.0.1 and earlier"}]}},{"product_name":"The Public Certification Service for Individuals \"The JPKI user's software (for Windows Vista)\"","version":{"version_data":[{"version_value":"Ver3.0.1 and earlier"}]}},{"product_name":"The Public Certification Service for Individuals \"The JPKI user's software\"","version":{"version_data":[{"version_value":"Ver2.6 and earlier"}]}}]},"vendor_name":"Japan Agency for Local Authority Information Systems"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"Untrusted search path vulnerability in The Public Certification Service for Individuals \"The JPKI user's software (for Windows 7 and later)\" Ver3.0.1 and earlier, The Public Certification Service for Individuals \"The JPKI user's software (for Windows Vista)\" Ver3.0.1 and earlier and The Public Certification Service for Individuals \"The JPKI user's software\" Ver2.6 and earlier allows remote attackers to gain privileges via a Trojan horse DLL in an unspecified directory."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"Untrusted search path vulnerability"}]}]},"references":{"reference_data":[{"name":"JVN#91002412","refsource":"JVN","url":"https://jvn.jp/en/jp/JVN91002412/index.html"},{"name":"94087","refsource":"BID","url":"http://www.securityfocus.com/bid/94087"}]}}}},"cveMetadata":{"assignerOrgId":"ede6fdc4-6654-4307-a26d-3331c018e2ce","assignerShortName":"jpcert","cveId":"CVE-2016-4902","datePublished":"2017-06-09T16:00:00.000Z","dateReserved":"2016-05-17T00:00:00.000Z","dateUpdated":"2024-08-06T00:46:39.972Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2017-06-09 16:29:00","lastModifiedDate":"2025-04-20 01:37:25","problem_types":["CWE-426","Untrusted search path vulnerability"],"metrics":{"cvssMetricV30":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"3.0","vectorString":"CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","baseScore":7.8,"baseSeverity":"HIGH","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"REQUIRED","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH"},"exploitabilityScore":1.8,"impactScore":5.9}],"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:M/Au:N/C:C/I:C/A:C","baseScore":9.3,"accessVector":"NETWORK","accessComplexity":"MEDIUM","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":8.6,"impactScore":10,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:jpki:the_public_certification_service_for_individuals:*:*:*:*:*:*:*:*","versionEndIncluding":"2.6","matchCriteriaId":"FAF6DA38-9883-45BF-80DE-68FD8269209A"},{"vulnerable":true,"criteria":"cpe:2.3:a:jpki:the_public_certification_service_for_individuals_for_windows_7:*:*:*:*:*:*:*:*","versionEndIncluding":"3.0.1","matchCriteriaId":"899E2433-30DB-46BF-9D12-62C443CCD964"},{"vulnerable":true,"criteria":"cpe:2.3:a:jpki:the_public_certification_service_for_individuals_for_windows_vista:*:*:*:*:*:*:*:*","versionEndIncluding":"3.0.1","matchCriteriaId":"1D0E17CF-8E23-4E27-B352-CDD5B8DF8DB9"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2016","CveId":"4902","Ordinal":"1","Title":"CVE-2016-4902","CVE":"CVE-2016-4902","Year":"2016"},"notes":[{"CveYear":"2016","CveId":"4902","Ordinal":"1","NoteData":"Untrusted search path vulnerability in The Public Certification Service for Individuals \"The JPKI user's software (for Windows 7 and later)\" Ver3.0.1 and earlier, The Public Certification Service for Individuals \"The JPKI user's software (for Windows Vista)\" Ver3.0.1 and earlier and The Public Certification Service for Individuals \"The JPKI user's software\" Ver2.6 and earlier allows remote attackers to gain privileges via a Trojan horse DLL in an unspecified directory.","Type":"Description","Title":"CVE-2016-4902"},{"CveYear":"2016","CveId":"4902","Ordinal":"2","NoteData":"2017-06-09","Type":"Other","Title":"Published"},{"CveYear":"2016","CveId":"4902","Ordinal":"3","NoteData":"2017-06-12","Type":"Other","Title":"Modified"}]}}}