CVE-2017-2154
Untrusted search path vulnerability in Hanako 2017, Hanako 2016, Hanako 2015, Hanako Pro 3, JUST Office 3 [Standard], JUST Office 3 [Eco Print Package], JUST Office 3 & Tri-De DataProtect Package, JUST Government 3, JUST Jump Class 2, JUST Frontier 3, JUST School 6 Premium, Hanako Police 5, JUST Police 3, Hanako 2017 trial version allows remote attackers to gain privileges via a Trojan horse DLL in an unspecified directory.
Published:Apr 28, 2017
Last Modified:Apr 20, 2025
EPS:Apr 28, 2017
EPSS Score:0.00301
CVSS Score:7.8
Affected Products
Vendor
Product
Action
Vendor
Justsystems
Product
Hanako
Justsystems
Hanako
Vendor
Justsystems
Product
Hanako Police
Justsystems
Hanako Police
Vendor
Justsystems
Product
Hanako Pro
Justsystems
Hanako Pro
Vendor
Justsystems
Product
Just Frontier
Justsystems
Just Frontier
Vendor
Justsystems
Product
Just Government
Justsystems
Just Government
Vendor
Justsystems
Product
Just Jump Class
Justsystems
Just Jump Class
Vendor
Justsystems
Product
Just Office
Justsystems
Just Office
Vendor
Justsystems
Product
Just Police
Justsystems
Just Police
Vendor
Justsystems
Product
Just School
Justsystems
Just School
Exploits
No exploit reference
Common Weakness Enumeration
Common Attack Pattern Enumeration and Classification (CAPEC)
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
