// For flags

CVE-2006-6400

 

Severity Score

6.8
*CVSS v2

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

Buffer overflow in JustSystems Hanako 2004 through 2006, Hanako viewer 1.x, Ichitaro 2004, Ichitaro 2005, Ichitaro Lite2, Ichitaro viewer 4.x, and Sanshiro 2005 allows remote attackers to execute arbitrary code via the (1) Keyword and (2) Title fields, related to string length fields.

Desbordamiento de búfer en JustSystems Hanako 2004 hasta 2006, Hanako viewer 1.x, Ichitaro 2004, Ichitaro 2005, Ichitaro Lite2, Ichitaro viewer 4.x, y Sanshiro 2005 permite a atacantes remotos ejecutar código de su elección mediante los campos (1) Keyword y (2) Title, relativos a campos de longitud de cadenas.

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Medium
Authentication
None
Confidentiality
Partial
Integrity
Partial
Availability
Partial
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2006-12-09 CVE Reserved
  • 2006-12-10 CVE Published
  • 2024-06-21 EPSS Updated
  • 2024-08-07 CVE Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
  • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Justsystem
Search vendor "Justsystem"
Hanako
Search vendor "Justsystem" for product "Hanako"
2004
Search vendor "Justsystem" for product "Hanako" and version "2004"
-
Affected
Justsystem
Search vendor "Justsystem"
Hanako
Search vendor "Justsystem" for product "Hanako"
2005
Search vendor "Justsystem" for product "Hanako" and version "2005"
-
Affected
Justsystem
Search vendor "Justsystem"
Hanako
Search vendor "Justsystem" for product "Hanako"
2006
Search vendor "Justsystem" for product "Hanako" and version "2006"
-
Affected
Justsystem
Search vendor "Justsystem"
Hanako Viewer
Search vendor "Justsystem" for product "Hanako Viewer"
1.0
Search vendor "Justsystem" for product "Hanako Viewer" and version "1.0"
-
Affected
Justsystem
Search vendor "Justsystem"
Ichitaro
Search vendor "Justsystem" for product "Ichitaro"
*-
Affected
Justsystem
Search vendor "Justsystem"
Ichitaro
Search vendor "Justsystem" for product "Ichitaro"
2005
Search vendor "Justsystem" for product "Ichitaro" and version "2005"
-
Affected
Justsystem
Search vendor "Justsystem"
Ichitaro
Search vendor "Justsystem" for product "Ichitaro"
2006
Search vendor "Justsystem" for product "Ichitaro" and version "2006"
-
Affected
Justsystem
Search vendor "Justsystem"
Ichitaro Lite2
Search vendor "Justsystem" for product "Ichitaro Lite2"
*-
Affected
Justsystem
Search vendor "Justsystem"
Ichitaro Lite2
Search vendor "Justsystem" for product "Ichitaro Lite2"
r2
Search vendor "Justsystem" for product "Ichitaro Lite2" and version "r2"
-
Affected
Justsystem
Search vendor "Justsystem"
Ichitaro Viewer
Search vendor "Justsystem" for product "Ichitaro Viewer"
4.0
Search vendor "Justsystem" for product "Ichitaro Viewer" and version "4.0"
-
Affected
Justsystem
Search vendor "Justsystem"
Sanshiro
Search vendor "Justsystem" for product "Sanshiro"
2005
Search vendor "Justsystem" for product "Sanshiro" and version "2005"
-
Affected