JustSystems records
32 published records for vendor justsystems.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 14
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer7
- CWE-122 Heap-based Buffer Overflow2
- CWE-416 Use After Free2
- CWE-20 Improper Input Validation2
- CWE-264 Permissions, Privileges, and Access Controls1
- CWE-428 Unquoted Search Path or Element1
The weakness classes this vendor ships most often: where to look.
CWEAll records
32 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
42Plan | CVE-2014-7247No exploit | Unspecified vulnerability in JustSystems Ichitaro 2008 through 2011; Ichitaro Government 6, 7, 2008, 2009, and 2010; Ichitaro Pro; Ichitaro justsystems · ichitaro · CWE-19 | Critical10.0 | — | 5.3% | Nov 25, 2014 |
41Plan | CVE-2013-3644No exploit | Unspecified vulnerability in JustSystems Ichitaro 2006 through 2013; Ichitaro Pro through 2; Ichitaro Government 6, 7, and 2006 through 2010justsystems · ichitaro | Critical10.0 | — | 4.2% | Jun 18, 2013 |
40Plan | CVE-2017-2789No exploit | When copying filedata into a buffer, JustSystems Ichitaro Office 2016 Trial will calculate two values to determine how much data to copy frojustsystems · ichitaro · CWE-119 | Critical9.8 | — | 2.3% | Feb 24, 2017 |
40Plan | CVE-2017-2790No exploit | When processing a record type of 0x3c from a Workbook stream from an Excel file (.xls), JustSystems Ichitaro Office trusts that the size is justsystems · ichitaro · CWE-119 | Critical9.8 | — | 1.9% | Feb 24, 2017 |
39Monitor | CVE-2010-3915No exploit | Unspecified vulnerability in JustSystems Ichitaro and Ichitaro Government allows remote attackers to execute arbitrary code via a crafted dojustsystems · ichitaro | Critical9.3 | — | 6.1% | Nov 5, 2010 |
39Monitor | CVE-2011-1331No exploit | JustSystems Ichitaro 2005 through 2011, Ichitaro Government 6, Ichitaro Government 2006 through 2010, Ichitaro Portable, Ichitaro Pro, and Ijustsystems · ichitaro · CWE-119 | Critical9.3 | — | 5.6% | Jul 18, 2011 |
39Monitor | CVE-2010-3916No exploit | Unspecified vulnerability in JustSystems Ichitaro and Ichitaro Government allows remote attackers to execute arbitrary code via a crafted dojustsystems · ichitaro | Critical9.3 | — | 5.6% | Nov 5, 2010 |
39Monitor | CVE-2010-2152No exploit | Unspecified vulnerability in JustSystems Ichitaro 2004 through 2009, Ichitaro Government 2006 through 2009, and Just School 2008 and 2009 aljustsystems · ichitaro | Critical9.3 | — | 5.6% | Jun 3, 2010 |
39Monitor | CVE-2022-36344No exploit | An unquoted search path vulnerability exists in 'JustSystems JUST Online Update for J-License' bundled with multiple products for corporate justsystems · atok medical 2 · CWE-428 | Critical9.8 | — | 0.9% | Aug 16, 2022 |
38Monitor | CVE-2013-5990No exploit | Unspecified vulnerability in JustSystems Ichitaro 2006 through 2011; Ichitaro Government 6, 7, and 2006 through 2010; Ichitaro 2011 Sou; Ichjustsystems · ichitaro pro | Critical9.3 | — | 4.6% | Nov 13, 2013 |
38Monitor | CVE-2012-0269No exploit | Buffer overflow in JustSystems Ichitaro 2011 Sou, Ichitaro 2006 through 2011, Ichitaro Government 2006 through 2010, Ichitaro Portable with justsystems · ichitaro · CWE-119 | Critical9.3 | — | 4.2% | Apr 27, 2012 |
38Monitor | CVE-2010-1424No exploit | Unspecified vulnerability in JustSystems Ichitaro and Ichitaro Government 2006 through 2010 allows user-assisted remote attackers to executejustsystems · ichitaro | Critical9.3 | — | 4.0% | Apr 15, 2010 |
38Monitor | CVE-2008-3919No exploit | Unspecified vulnerability in multiple JustSystems Ichitaro products allows remote attackers to execute arbitrary code via a crafted JTD docujustsystems · ichitaro · CWE-94 | Critical9.3 | — | 3.9% | Sep 4, 2008 |
38Monitor | CVE-2013-0707No exploit | Unspecified vulnerability in JustSystems Ichitaro 2006 and 2007, Ichitaro Government 2006 and 2007, Ichitaro Portable with oreplug, Hanako 2justsystems · hanako | Critical9.3 | — | 3.8% | Mar 1, 2013 |
38Monitor | CVE-2009-4737No exploit | Stack-based buffer overflow in JustSystems Corporation Ichitaro 13, 2004 through 2009, Viewer 2009 19.0.1.0 and earlier, and other versions justsystems · ichitaro · CWE-119 | Critical9.3 | — | 3.5% | Apr 6, 2010 |
31Monitor | CVE-2014-2003No exploit | JustSystems JUST Online Update, as used in Ichitaro through 2014 and other products, does not properly validate signatures of update modulesjustsystems · ichitaro · CWE-20 | High7.6 | — | 3.6% | Jun 16, 2014 |
31Monitor | CVE-2014-0810No exploit | Unspecified vulnerability in JustSystems Sanshiro 2007 before update 3, 2008 before update 5, 2009 before update 6, and 2010 before update 6justsystems · sanshiro | High7.5 | — | 3.5% | Jan 29, 2014 |
31Monitor | CVE-2017-10870No exploit | Memory corruption vulnerability in Rakuraku Hagaki (Rakuraku Hagaki 2018, Rakuraku Hagaki 2017, Rakuraku Hagaki 2016) and Rakuraku Hagaki Sejustsystems · easy postcard 2016 · CWE-119 | High7.8 | — | 1.3% | Nov 2, 2017 |
31Monitor | CVE-2017-2154No exploit | Untrusted search path vulnerability in Hanako 2017, Hanako 2016, Hanako 2015, Hanako Pro 3, JUST Office 3 [Standard], JUST Office 3 [Eco Prijustsystems · hanako · CWE-20 | High7.8 | — | 1.2% | Apr 28, 2017 |
31Monitor | CVE-2017-2791No exploit | JustSystems Ichitaro 2016 Trial contains a vulnerability that exists when trying to open a specially crafted PowerPoint file.justsystems · ichitaro · CWE-119 | High7.8 | — | 1.2% | Feb 24, 2017 |
31Monitor | CVE-2023-38128No exploit | An out-of-bounds write vulnerability exists in the "HyperLinkFrame" stream parser of Ichitaro 2023 1.0.1.59372.justsystems · easy postcard max · CWE-843 | High7.8 | — | 0.7% | Oct 19, 2023 |
31Monitor | CVE-2023-38127No exploit | An integer overflow exists in the "HyperLinkFrame" stream parser of Ichitaro 2023 1.0.1.59372.justsystems · easy postcard max · CWE-190 | High7.8 | — | 0.6% | Oct 19, 2023 |
31Monitor | CVE-2023-34366No exploit | A use-after-free vulnerability exists in the Figure stream parsing functionality of Ichitaro 2023 1.0.1.59372.justsystems · easy postcard max · CWE-416 | High7.8 | — | 0.6% | Oct 19, 2023 |
31Monitor | CVE-2023-22660No exploit | A heap-based buffer overflow vulnerability exists in the way Ichitaro version 2022 1.0.1.57600 processes certain LayoutBox stream record typjustsystems · ichitaro 2022 · CWE-122 | High7.8 | — | 0.5% | Apr 5, 2023 |
31Monitor | CVE-2022-43664No exploit | A use-after-free vulnerability exists within the way Ichitaro Word Processor 2022, version 1.0.1.57600, processes protected documents.justsystems · ichitaro 2022 · CWE-416 | High7.8 | — | 0.5% | Apr 5, 2023 |
- CVE-2014-724742Plan
Unspecified vulnerability in JustSystems Ichitaro 2008 through 2011; Ichitaro Government 6, 7, 2008, 2009, and 2010; Ichitaro Pro; Ichitaro
CriticalCVSS 10.0No exploitEPSS 5%justsystems · ichitaroNov 25, 2014
- CVE-2013-364441Plan
Unspecified vulnerability in JustSystems Ichitaro 2006 through 2013; Ichitaro Pro through 2; Ichitaro Government 6, 7, and 2006 through 2010
CriticalCVSS 10.0No exploitEPSS 4%justsystems · ichitaroJun 18, 2013
- CVE-2017-278940Plan
When copying filedata into a buffer, JustSystems Ichitaro Office 2016 Trial will calculate two values to determine how much data to copy fro
CriticalCVSS 9.8No exploitEPSS 2%justsystems · ichitaroFeb 24, 2017
- CVE-2017-279040Plan
When processing a record type of 0x3c from a Workbook stream from an Excel file (.xls), JustSystems Ichitaro Office trusts that the size is
CriticalCVSS 9.8No exploitEPSS 2%justsystems · ichitaroFeb 24, 2017
- CVE-2010-391539Monitor
Unspecified vulnerability in JustSystems Ichitaro and Ichitaro Government allows remote attackers to execute arbitrary code via a crafted do
CriticalCVSS 9.3No exploitEPSS 6%justsystems · ichitaroNov 5, 2010
- CVE-2011-133139Monitor
JustSystems Ichitaro 2005 through 2011, Ichitaro Government 6, Ichitaro Government 2006 through 2010, Ichitaro Portable, Ichitaro Pro, and I
CriticalCVSS 9.3No exploitEPSS 6%justsystems · ichitaroJul 18, 2011
- CVE-2010-391639Monitor
Unspecified vulnerability in JustSystems Ichitaro and Ichitaro Government allows remote attackers to execute arbitrary code via a crafted do
CriticalCVSS 9.3No exploitEPSS 6%justsystems · ichitaroNov 5, 2010
- CVE-2010-215239Monitor
Unspecified vulnerability in JustSystems Ichitaro 2004 through 2009, Ichitaro Government 2006 through 2009, and Just School 2008 and 2009 al
CriticalCVSS 9.3No exploitEPSS 6%justsystems · ichitaroJun 3, 2010
- CVE-2022-3634439Monitor
An unquoted search path vulnerability exists in 'JustSystems JUST Online Update for J-License' bundled with multiple products for corporate
CriticalCVSS 9.8No exploitEPSS 1%justsystems · atok medical 2Aug 16, 2022
- CVE-2013-599038Monitor
Unspecified vulnerability in JustSystems Ichitaro 2006 through 2011; Ichitaro Government 6, 7, and 2006 through 2010; Ichitaro 2011 Sou; Ich
CriticalCVSS 9.3No exploitEPSS 5%justsystems · ichitaro proNov 13, 2013
- CVE-2012-026938Monitor
Buffer overflow in JustSystems Ichitaro 2011 Sou, Ichitaro 2006 through 2011, Ichitaro Government 2006 through 2010, Ichitaro Portable with
CriticalCVSS 9.3No exploitEPSS 4%justsystems · ichitaroApr 27, 2012
- CVE-2010-142438Monitor
Unspecified vulnerability in JustSystems Ichitaro and Ichitaro Government 2006 through 2010 allows user-assisted remote attackers to execute
CriticalCVSS 9.3No exploitEPSS 4%justsystems · ichitaroApr 15, 2010
- CVE-2008-391938Monitor
Unspecified vulnerability in multiple JustSystems Ichitaro products allows remote attackers to execute arbitrary code via a crafted JTD docu
CriticalCVSS 9.3No exploitEPSS 4%justsystems · ichitaroSep 4, 2008
- CVE-2013-070738Monitor
Unspecified vulnerability in JustSystems Ichitaro 2006 and 2007, Ichitaro Government 2006 and 2007, Ichitaro Portable with oreplug, Hanako 2
CriticalCVSS 9.3No exploitEPSS 4%justsystems · hanakoMar 1, 2013
- CVE-2009-473738Monitor
Stack-based buffer overflow in JustSystems Corporation Ichitaro 13, 2004 through 2009, Viewer 2009 19.0.1.0 and earlier, and other versions
CriticalCVSS 9.3No exploitEPSS 3%justsystems · ichitaroApr 6, 2010
- CVE-2014-200331Monitor
JustSystems JUST Online Update, as used in Ichitaro through 2014 and other products, does not properly validate signatures of update modules
HighCVSS 7.6No exploitEPSS 4%justsystems · ichitaroJun 16, 2014
- CVE-2014-081031Monitor
Unspecified vulnerability in JustSystems Sanshiro 2007 before update 3, 2008 before update 5, 2009 before update 6, and 2010 before update 6
HighCVSS 7.5No exploitEPSS 3%justsystems · sanshiroJan 29, 2014
- CVE-2017-1087031Monitor
Memory corruption vulnerability in Rakuraku Hagaki (Rakuraku Hagaki 2018, Rakuraku Hagaki 2017, Rakuraku Hagaki 2016) and Rakuraku Hagaki Se
HighCVSS 7.8No exploitEPSS 1%justsystems · easy postcard 2016Nov 2, 2017
- CVE-2017-215431Monitor
Untrusted search path vulnerability in Hanako 2017, Hanako 2016, Hanako 2015, Hanako Pro 3, JUST Office 3 [Standard], JUST Office 3 [Eco Pri
HighCVSS 7.8No exploitEPSS 1%justsystems · hanakoApr 28, 2017
- CVE-2017-279131Monitor
JustSystems Ichitaro 2016 Trial contains a vulnerability that exists when trying to open a specially crafted PowerPoint file.
HighCVSS 7.8No exploitEPSS 1%justsystems · ichitaroFeb 24, 2017
- CVE-2023-3812831Monitor
An out-of-bounds write vulnerability exists in the "HyperLinkFrame" stream parser of Ichitaro 2023 1.0.1.59372.
HighCVSS 7.8No exploitEPSS 1%justsystems · easy postcard maxOct 19, 2023
- CVE-2023-3812731Monitor
An integer overflow exists in the "HyperLinkFrame" stream parser of Ichitaro 2023 1.0.1.59372.
HighCVSS 7.8No exploitEPSS 1%justsystems · easy postcard maxOct 19, 2023
- CVE-2023-3436631Monitor
A use-after-free vulnerability exists in the Figure stream parsing functionality of Ichitaro 2023 1.0.1.59372.
HighCVSS 7.8No exploitEPSS 1%justsystems · easy postcard maxOct 19, 2023
- CVE-2023-2266031Monitor
A heap-based buffer overflow vulnerability exists in the way Ichitaro version 2022 1.0.1.57600 processes certain LayoutBox stream record typ
HighCVSS 7.8No exploitEPSS 1%justsystems · ichitaro 2022Apr 5, 2023
- CVE-2022-4366431Monitor
A use-after-free vulnerability exists within the way Ichitaro Word Processor 2022, version 1.0.1.57600, processes protected documents.
HighCVSS 7.8No exploitEPSS 1%justsystems · ichitaro 2022Apr 5, 2023