JustSystems ATOK Screen Lock Local Privilege Escalation Vulnerability
BID:36220
Info
JustSystems ATOK Screen Lock Local Privilege Escalation Vulnerability
| Bugtraq ID: | 36220 |
| Class: | Design Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Sep 02 2009 12:00AM |
| Updated: | Sep 02 2009 08:02PM |
| Credit: | JustSystems |
| Vulnerable: |
Justsystem ATOK 0 |
| Not Vulnerable: | |
Discussion
JustSystems ATOK Screen Lock Local Privilege Escalation Vulnerability
JustSystems ATOK is prone to a local privilege-escalation vulnerability.
An attacker with physical access to an affected computer can exploit this issue to execute arbitrary code with SYSTEM-level privileges.
JustSystems ATOK is prone to a local privilege-escalation vulnerability.
An attacker with physical access to an affected computer can exploit this issue to execute arbitrary code with SYSTEM-level privileges.
Exploit / POC
JustSystems ATOK Screen Lock Local Privilege Escalation Vulnerability
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
JustSystems ATOK Screen Lock Local Privilege Escalation Vulnerability
Solution:
The vendor has released an advisory and updates. Please see the references for details.
Solution:
The vendor has released an advisory and updates. Please see the references for details.
References
JustSystems ATOK Screen Lock Local Privilege Escalation Vulnerability
References:
References:
- ATOK Homepage (JustSystem)
- JustSystem [JS09003] Security Advisory (JustSystem)
- JVN#57040664 (JVN)