CVE-2014-7247

critical
Published 2014-11-26 · Modified 2026-05-06
CVSS v3
CVSS v2
10.0
VIR risk
10.0

Description

Unspecified vulnerability in JustSystems Ichitaro 2008 through 2011; Ichitaro Government 6, 7, 2008, 2009, and 2010; Ichitaro Pro; Ichitaro Pro 2; Ichitaro 2011 Sou; Ichitaro 2012 Shou; Ichitaro 2013 Gen; and Ichitaro 2014 Tetsu allows remote attackers to execute arbitrary code via a crafted file.

Predictions

Exploit likelihood
20%
Patch ETA

Heuristic predictions, AS-IS, for prioritization only.

Mitigations

vendor Authored 2026-05-27

Vendor advisory: vultures@jpcert.or.jp — http://www.justsystems.com/jp/info/js14003.html

vendor Authored 2026-05-27

Vendor advisory: vultures@jpcert.or.jp — http://jvndb.jvn.jp/jvndb/JVNDB-2014-000131

vendor Authored 2026-05-27

Vendor advisory: vultures@jpcert.or.jp — http://jvn.jp/en/jp/JVN16318793/index.html

Application impact

VendorProductVersionsFixed
justsystemsichitaro6
justsystemsichitaro7
justsystemsichitaro2008
justsystemsichitaro2009
justsystemsichitaro2010
justsystemsichitaro2011
justsystemsichitaro2012
justsystemsichitaro2013
justsystemsichitaro2014
justsystemsichitaro_pro-
justsystemsichitaro_pro2

References

CWEs

CWE-19

Verify integrity in audit chain (admin only). AS-IS.