[Japanese] | |
JVNDB-2017-000144 | |
Denshi Nyusatsu Check Tool provided by Ministry of Education, Culture, Sports, Science and Technology may insecurely load Dynamic Link Libraries | |
Overview | |
Denshi Nyusatsu Check Tool provided by Ministry of Education, Culture, Sports, Science and Technology (MEXT) contains an issue with the DLL search path, which may lead to insecurely loading Dynamic Link Libraries (CWE-427). | |
CVSS Severity (What is CVSS?) | |
CVSS V3 Severity:
Base Metrics 7.8 (High) [IPA Score]
CVSS V2 Severity:
Base Metrics 6.8 (Medium) [IPA Score]
| |
Affected Products | |
| |
Ministry of Education, Culture, Sports, Science and Technology (MEXT) | |
| |
Impact | |
Arbitrary code may be executed with the privilege of the user running the application. | |
Solution | |
[Update the software] | |
Vendor Information | |
Ministry of Education, Culture, Sports, Science and Technology (MEXT) | |
CWE (What is CWE?) | |
| |
CVE (What is CVE?) | |
| |
References | |
| |
Revision History | |
|
Date Public | 2017/06/26 |
Date First Published | 2017/06/26 |
Date Last Updated | 2018/02/07 |