{"api_version":"1","generated_at":"2026-07-23T19:43:27+00:00","cve":"CVE-2016-7818","urls":{"html":"https://cve.report/CVE-2016-7818","api":"https://cve.report/api/cve/CVE-2016-7818.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2016-7818","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2016-7818"},"summary":{"title":"CVE-2016-7818","description":"Untrusted search path vulnerability in Installers for Specification check program (social insurance) Ver. 9.00 and earlier, TODOKESHO print program Ver. 5.00 and earlier, Device data encryption program Ver. 1.00 and earlier, and TODOKESHO creation program Ver. 15.00 and earlier available prior to October 17, 2016 allows remote attackers to gain privileges via a Trojan horse DLL in an unspecified directory.","state":"PUBLISHED","assigner":"jpcert","published_at":"2017-06-09 16:29:00","updated_at":"2025-04-20 01:37:25"},"problem_types":["CWE-264","Untrusted search path vulnerability"],"metrics":[{"version":"3.0","source":"nvd@nist.gov","type":"Primary","score":"7.8","severity":"HIGH","vector":"CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","data":{"version":"3.0","vectorString":"CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","baseScore":7.8,"baseSeverity":"HIGH","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"REQUIRED","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH"}},{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"6.8","severity":"","vector":"AV:N/AC:M/Au:N/C:P/I:P/A:P","data":{"version":"2.0","vectorString":"AV:N/AC:M/Au:N/C:P/I:P/A:P","baseScore":6.8,"accessVector":"NETWORK","accessComplexity":"MEDIUM","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"}}],"references":[{"url":"http://www.nenkin.go.jp/denshibenri/setsumei/0104.html","name":"http://www.nenkin.go.jp/denshibenri/setsumei/0104.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"],"title":"届書データにパスワードを設定する場合｜日本年金機構","mime":"text/xml","httpstatus":"200","archivestatus":"200"},{"url":"http://www.nenkin.go.jp/denshibenri/setsumei/20150415.html#cmscheck","name":"http://www.nenkin.go.jp/denshibenri/setsumei/20150415.html#cmscheck","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"],"title":"届出システムを自社開発または市販ソフトを使用する場合｜日本年金機構","mime":"text/xml","httpstatus":"200","archivestatus":"200"},{"url":"http://www.nenkin.go.jp/denshibenri/setsumei/20150105-03.html","name":"http://www.nenkin.go.jp/denshibenri/setsumei/20150105-03.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"],"title":"日本年金機構が提供する届書作成プログラムを利用する場合｜日本年金機構","mime":"text/xml","httpstatus":"200","archivestatus":"200"},{"url":"http://www.nenkin.go.jp/denshibenri/setsumei/20140630.html","name":"http://www.nenkin.go.jp/denshibenri/setsumei/20140630.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"],"title":"紙の様式に準じて出力する場合｜日本年金機構","mime":"text/xml","httpstatus":"200","archivestatus":"200"},{"url":"http://www.securityfocus.com/bid/94616","name":"http://www.securityfocus.com/bid/94616","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","VDB Entry"],"title":"Multiple Japan Pension Service Products CVE-2016-7818 DLL Loading Local Code Execution Vulnerability","mime":"text/html","httpstatus":"200","archivestatus":"0"},{"url":"https://jvn.jp/en/jp/JVN08868688/index.html","name":"https://jvn.jp/en/jp/JVN08868688/index.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","VDB Entry"],"title":"JVN#08868688: The installers of multiple Japan Pension Service software may insecurely load Dynamic Link Libraries","mime":"text/xml","httpstatus":"200","archivestatus":"200"},{"url":"https://www.cve.org/CVERecord?id=CVE-2016-7818","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2016-7818","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"Japan Pension Service","product":"Intstaller for Specification check program(social insurance)","version":"affected Ver. 9.00 and earlier that was available prior to October 17, 2016","platforms":[]},{"source":"CNA","vendor":"Japan Pension Service","product":"Intstaller for TODOKESHO print program","version":"affected Ver. 5.00 and earlier that was available prior to October 17, 2016","platforms":[]},{"source":"CNA","vendor":"Japan Pension Service","product":"Intstaller for Device data encryption program","version":"affected Ver. 1.00 and earlier that was available prior to October 17, 2016","platforms":[]},{"source":"CNA","vendor":"Japan Pension Service","product":"Intstaller for TODOKESHO creation program","version":"affected Ver. 15.00 and earlier that was available prior to October 17, 2016","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2016","cve_id":"7818","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"japan_pension_service","cpe5":"device_data_encryption_program","cpe6":"1.00","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2016","cve_id":"7818","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"japan_pension_service","cpe5":"specification_check_program","cpe6":"9.00","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2016","cve_id":"7818","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"japan_pension_service","cpe5":"todokesho_creation_program","cpe6":"15.00","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2016","cve_id":"7818","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"japan_pension_service","cpe5":"todokesho_print_program","cpe6":"5.00","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-06T02:04:56.077Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://www.nenkin.go.jp/denshibenri/setsumei/20150105-03.html"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://www.nenkin.go.jp/denshibenri/setsumei/20140630.html"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://www.nenkin.go.jp/denshibenri/setsumei/0104.html"},{"name":"94616","tags":["vdb-entry","x_refsource_BID","x_transferred"],"url":"http://www.securityfocus.com/bid/94616"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://www.nenkin.go.jp/denshibenri/setsumei/20150415.html#cmscheck"},{"name":"JVN#08868688","tags":["third-party-advisory","x_refsource_JVN","x_transferred"],"url":"https://jvn.jp/en/jp/JVN08868688/index.html"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"Intstaller for Specification check program(social insurance)","vendor":"Japan Pension Service","versions":[{"status":"affected","version":"Ver. 9.00 and earlier that was available prior to October 17, 2016"}]},{"product":"Intstaller for TODOKESHO print program","vendor":"Japan Pension Service","versions":[{"status":"affected","version":"Ver. 5.00 and earlier that was available prior to October 17, 2016"}]},{"product":"Intstaller for Device data encryption program","vendor":"Japan Pension Service","versions":[{"status":"affected","version":"Ver. 1.00 and earlier that was available prior to October 17, 2016"}]},{"product":"Intstaller for TODOKESHO creation program","vendor":"Japan Pension Service","versions":[{"status":"affected","version":"Ver. 15.00 and earlier that was available prior to October 17, 2016"}]}],"datePublic":"2016-12-01T00:00:00.000Z","descriptions":[{"lang":"en","value":"Untrusted search path vulnerability in Installers for Specification check program (social insurance) Ver. 9.00 and earlier, TODOKESHO print program Ver. 5.00 and earlier, Device data encryption program Ver. 1.00 and earlier, and TODOKESHO creation program Ver. 15.00 and earlier available prior to October 17, 2016 allows remote attackers to gain privileges via a Trojan horse DLL in an unspecified directory."}],"problemTypes":[{"descriptions":[{"description":"Untrusted search path vulnerability","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2017-06-12T09:57:01.000Z","orgId":"ede6fdc4-6654-4307-a26d-3331c018e2ce","shortName":"jpcert"},"references":[{"tags":["x_refsource_CONFIRM"],"url":"http://www.nenkin.go.jp/denshibenri/setsumei/20150105-03.html"},{"tags":["x_refsource_CONFIRM"],"url":"http://www.nenkin.go.jp/denshibenri/setsumei/20140630.html"},{"tags":["x_refsource_CONFIRM"],"url":"http://www.nenkin.go.jp/denshibenri/setsumei/0104.html"},{"name":"94616","tags":["vdb-entry","x_refsource_BID"],"url":"http://www.securityfocus.com/bid/94616"},{"tags":["x_refsource_CONFIRM"],"url":"http://www.nenkin.go.jp/denshibenri/setsumei/20150415.html#cmscheck"},{"name":"JVN#08868688","tags":["third-party-advisory","x_refsource_JVN"],"url":"https://jvn.jp/en/jp/JVN08868688/index.html"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"vultures@jpcert.or.jp","ID":"CVE-2016-7818","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"Intstaller for Specification check program(social insurance)","version":{"version_data":[{"version_value":"Ver. 9.00 and earlier that was available prior to October 17, 2016"}]}},{"product_name":"Intstaller for TODOKESHO print program","version":{"version_data":[{"version_value":"Ver. 5.00 and earlier that was available prior to October 17, 2016"}]}},{"product_name":"Intstaller for Device data encryption program","version":{"version_data":[{"version_value":"Ver. 1.00 and earlier that was available prior to October 17, 2016"}]}},{"product_name":"Intstaller for TODOKESHO creation program","version":{"version_data":[{"version_value":"Ver. 15.00 and earlier that was available prior to October 17, 2016"}]}}]},"vendor_name":"Japan Pension Service"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"Untrusted search path vulnerability in Installers for Specification check program (social insurance) Ver. 9.00 and earlier, TODOKESHO print program Ver. 5.00 and earlier, Device data encryption program Ver. 1.00 and earlier, and TODOKESHO creation program Ver. 15.00 and earlier available prior to October 17, 2016 allows remote attackers to gain privileges via a Trojan horse DLL in an unspecified directory."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"Untrusted search path vulnerability"}]}]},"references":{"reference_data":[{"name":"http://www.nenkin.go.jp/denshibenri/setsumei/20150105-03.html","refsource":"CONFIRM","url":"http://www.nenkin.go.jp/denshibenri/setsumei/20150105-03.html"},{"name":"http://www.nenkin.go.jp/denshibenri/setsumei/20140630.html","refsource":"CONFIRM","url":"http://www.nenkin.go.jp/denshibenri/setsumei/20140630.html"},{"name":"http://www.nenkin.go.jp/denshibenri/setsumei/0104.html","refsource":"CONFIRM","url":"http://www.nenkin.go.jp/denshibenri/setsumei/0104.html"},{"name":"94616","refsource":"BID","url":"http://www.securityfocus.com/bid/94616"},{"name":"http://www.nenkin.go.jp/denshibenri/setsumei/20150415.html#cmscheck","refsource":"CONFIRM","url":"http://www.nenkin.go.jp/denshibenri/setsumei/20150415.html#cmscheck"},{"name":"JVN#08868688","refsource":"JVN","url":"https://jvn.jp/en/jp/JVN08868688/index.html"}]}}}},"cveMetadata":{"assignerOrgId":"ede6fdc4-6654-4307-a26d-3331c018e2ce","assignerShortName":"jpcert","cveId":"CVE-2016-7818","datePublished":"2017-06-09T16:00:00.000Z","dateReserved":"2016-09-09T00:00:00.000Z","dateUpdated":"2024-08-06T02:04:56.077Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2017-06-09 16:29:00","lastModifiedDate":"2025-04-20 01:37:25","problem_types":["CWE-264","Untrusted search path vulnerability"],"metrics":{"cvssMetricV30":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"3.0","vectorString":"CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","baseScore":7.8,"baseSeverity":"HIGH","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"REQUIRED","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH"},"exploitabilityScore":1.8,"impactScore":5.9}],"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:M/Au:N/C:P/I:P/A:P","baseScore":6.8,"accessVector":"NETWORK","accessComplexity":"MEDIUM","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":8.6,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:japan_pension_service:device_data_encryption_program:1.00:*:*:*:*:*:*:*","matchCriteriaId":"B2EE2251-2F1A-44FE-94E0-94C75200ED2F"},{"vulnerable":true,"criteria":"cpe:2.3:a:japan_pension_service:specification_check_program:9.00:*:*:*:*:*:*:*","matchCriteriaId":"4038181E-5454-417C-AAE7-C8FD3A8EAEB0"},{"vulnerable":true,"criteria":"cpe:2.3:a:japan_pension_service:todokesho_creation_program:15.00:*:*:*:*:*:*:*","matchCriteriaId":"14C4E1CC-9E90-4E0D-823B-0B2E9EA2FE23"},{"vulnerable":true,"criteria":"cpe:2.3:a:japan_pension_service:todokesho_print_program:5.00:*:*:*:*:*:*:*","matchCriteriaId":"9D55DFBC-CFE6-43C6-8A61-848FE0BCE8CB"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2016","CveId":"7818","Ordinal":"1","Title":"CVE-2016-7818","CVE":"CVE-2016-7818","Year":"2016"},"notes":[{"CveYear":"2016","CveId":"7818","Ordinal":"1","NoteData":"Untrusted search path vulnerability in Installers for Specification check program (social insurance) Ver. 9.00 and earlier, TODOKESHO print program Ver. 5.00 and earlier, Device data encryption program Ver. 1.00 and earlier, and TODOKESHO creation program Ver. 15.00 and earlier available prior to October 17, 2016 allows remote attackers to gain privileges via a Trojan horse DLL in an unspecified directory.","Type":"Description","Title":"CVE-2016-7818"},{"CveYear":"2016","CveId":"7818","Ordinal":"2","NoteData":"2017-06-09","Type":"Other","Title":"Published"},{"CveYear":"2016","CveId":"7818","Ordinal":"3","NoteData":"2017-06-12","Type":"Other","Title":"Modified"}]}}}