Lucene search

K
kasperskyKaspersky LabKLA10267
HistoryFeb 20, 2006 - 12:00 a.m.

KLA10267 ACE vulnerability in NJStar Word Processor

2006-02-2000:00:00
Kaspersky Lab
threats.kaspersky.com
22

CVSS2

5.1

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:H/Au:N/C:P/I:P/A:P

AI Score

8.1

Confidence

Low

EPSS

0.021

Percentile

89.2%

A buffer overflow was found in NJStar Word Processor. By exploiting this vulnerability malicious users can execute arbitrary code. This vulnerability can be exploited remotely via NJX documents.

Original advisories

Related products

NJStar-Chinese-Word-Processor

NJStar-Japanese-Word-Processor

CVE list

CVE-2006-0807 high

Solution

Update to latest version

Impacts

  • ACE

Arbitrary code execution. Exploitation of vulnerabilities with this impact can lead to executing by abuser any code or commands at vulnerable machine or process.

Affected Products

  • NJStar Chiness Word Processor 4 all versions NJStar Chiness Word Processor 5 versions 5.9 and earlierNJStar Japaness Word Processor 4 all versionsNJStar Japaness Word Processor 5 versions 5.9 and earlier

CVSS2

5.1

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:H/Au:N/C:P/I:P/A:P

AI Score

8.1

Confidence

Low

EPSS

0.021

Percentile

89.2%

Related for KLA10267