CVE-2009-1054
Last modified
CVE-2009-1054 is a vulnerability of currently unknown severity. Unspecified vulnerability in JustSystems Ichitaro 13, 2004 through 2008, Lite2, and Ichitaro viewer 5.1.5.0 and earlier allows remote attackers to execute arbitrary code via a crafted file, as exploited in the wild by Trojan.Tarodrop.H in March 2009.. EPSS estimates a 3.91% chance of exploitation in the next 30 days.
Description
Unspecified vulnerability in JustSystems Ichitaro 13, 2004 through 2008, Lite2, and Ichitaro viewer 5.1.5.0 and earlier allows remote attackers to execute arbitrary code via a crafted file, as exploited in the wild by Trojan.Tarodrop.H in March 2009.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Ichitaro | Ichitaro | 13 |
| Ichitaro | Ichitaro | 2004 |
| Ichitaro | Ichitaro | 2005 |
| Ichitaro | Ichitaro | 2006 |
| Ichitaro | Ichitaro | 2007 |
| Ichitaro | Ichitaro | 2008 |
| Ichitaro | Ichitaro | lite2 |
| Ichitaro | Ichitaro Viewer | <= 5.1.5.0 |
References
- http://secunia.com/advisories/34405Vendor Advisory
- http://www.justsystems.com/jp/info/js09001.htmlPatch, Vendor Advisory
- http://www.vupen.com/english/advisories/2009/0769Vendor Advisory
- http://secunia.com/advisories/34405Vendor Advisory
- http://www.justsystems.com/jp/info/js09001.htmlPatch, Vendor Advisory
- http://www.vupen.com/english/advisories/2009/0769Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2009-1054?
How severe is CVE-2009-1054?
How do I fix CVE-2009-1054?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2009
- CVE-2009-1048The web interface on the snom VoIP phones snom 300, snom 320…9.8
- CVE-2009-1049SQL injection vulnerability in articleCall.php in Bloginator…
- CVE-2009-1050Bloginator 1A allows remote attackers to bypass authenticati…
- CVE-2009-1051FubarForum 1.6 and earlier stores sensitive information unde…
- CVE-2009-1052FireAnt 1.3 and earlier stores sensitive information under t…
- CVE-2009-1053chaozzDB 1.2 and earlier stores sensitive information under …
- CVE-2009-1055Unspecified vulnerability in the web service in Sitecore CMS…
- CVE-2009-1056IBM Rational AppScan Enterprise before 5.5 FP1 allows remote…
- CVE-2009-1057MicroSmarts Enterprise ZipItFast! 3.0 allows remote attacker…
- CVE-2009-1058Stack-based buffer overflow in ZipGenius might allow remote …
- CVE-2009-1059Stack-based buffer overflow in Trident PowerZip 7.2 might al…
- CVE-2009-1060Unspecified vulnerability in Apple Safari on Mac OS X 10.5.6…
Are you affected by CVE-2009-1054?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
