[Japanese]

JVNDB-2012-001191

Arbitrary Code Execution Vulnerability in Hitachi COBOL2002

Overview

Hitachi COBOL2002 Net Developer, Net Server Suite, and Net Client Suite contain a vulnerability where arbitrary code may be executed.
CVSS Severity (What is CVSS?)

CVSS V2 Severity:
Base Metrics 10.0 (High) [NVD Score]
  • Access Vector: Network
  • Access Complexity: Low
  • Authentication: None
  • Confidentiality Impact: Complete
  • Integrity Impact: Complete
  • Availability Impact: Complete
Affected Products


Hitachi, Ltd
  • COBOL2002 Net Client Suite
  • COBOL2002 Net Developer
  • COBOL2002 Net Server Suite

Please refer to the vendor information for detailed version information.
Impact

A remote attacker could execute arbitrary code via unknown attack vectors.
Solution

Please refer to the 'Vendor Information' section for the official countermeasure and take appropriate action.
Vendor Information

Hitachi, Ltd
  • Hitachi Software Vulnerability Information : HS12-002
CWE (What is CWE?)

  1. No Mapping(CWE-noinfo) [NVD Evaluation]
CVE (What is CVE?)

  1. CVE-2012-0918
References

  1. National Vulnerability Database (NVD) : CVE-2012-0918
Revision History

  • [2012/01/27]
      Web page was published