CVE-2013-0707
Status: ModifiedHigh (9.3)—
Unspecified vulnerability in JustSystems Ichitaro 2006 and 2007, Ichitaro Government 2006 and 2007, Ichitaro Portable with oreplug, Hanako 2006 through 2013, Hanako Police, Hanako Police 3, and Hanako Police 2010 allows remote attackers to execute arbitrary code via a crafted file.
CVSS
- Version: 2.0
- Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C
- Base score: 9.3
Exploitation probability (EPSS)
- Probability of exploitation in the next 30 days: 3.82%
- Percentile among all scored CVEs: 90
- Score date: 10/3/2026
EPSS (Exploit Prediction Scoring System, FIRST) estimates how likely a vulnerability is to be exploited in the wild within 30 days. It complements CVSS (impact) and CISA KEV (confirmed exploitation).
Affected technologies (5)
CWEs
- NVD-CWE-noinfo
References
Raw JSON (NVD)
Show
{
"id": "CVE-2013-0707",
"cveTags": [],
"metrics": {
"cvssMetricV2": [
{
"type": "Primary",
"source": "nvd@nist.gov",
"cvssData": {
"version": "2.0",
"baseScore": 9.3,
"accessVector": "NETWORK",
"vectorString": "AV:N/AC:M/Au:N/C:C/I:C/A:C",
"authentication": "NONE",
"integrityImpact": "COMPLETE",
"accessComplexity": "MEDIUM",
"availabilityImpact": "COMPLETE",
"confidentialityImpact": "COMPLETE"
},
"acInsufInfo": false,
"impactScore": 10,
"baseSeverity": "HIGH",
"obtainAllPrivilege": false,
"exploitabilityScore": 8.6,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": true
}
]
},
"affected": [
{
"source": "vultures@jpcert.or.jp",
"affectedData": [
{
"vendor": "n/a",
"product": "n/a",
"versions": [
{
"status": "affected",
"version": "n/a"
}
]
}
]
}
],
"published": "2013-03-01T05:40:17.647",
"references": [
{
"url": "http://jvn.jp/en/jp/JVN16817324/index.html",
"source": "vultures@jpcert.or.jp"
},
{
"url": "http://jvndb.jvn.jp/jvndb/JVNDB-2013-000015",
"source": "vultures@jpcert.or.jp"
},
{
"url": "http://www.justsystems.com/jp/info/js13001.html",
"tags": [
"Patch",
"Vendor Advisory"
],
"source": "vultures@jpcert.or.jp"
},
{
"url": "http://jvn.jp/en/jp/JVN16817324/index.html",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://jvndb.jvn.jp/jvndb/JVNDB-2013-000015",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://www.justsystems.com/jp/info/js13001.html",
"tags": [
"Patch",
"Vendor Advisory"
],
"source": "af854a3a-2127-422b-91ae-364da2661108"
}
],
"vulnStatus": "Modified",
"weaknesses": [
{
"type": "Primary",
"source": "nvd@nist.gov",
"description": [
{
"lang": "en",
"value": "NVD-CWE-noinfo"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "Unspecified vulnerability in JustSystems Ichitaro 2006 and 2007, Ichitaro Government 2006 and 2007, Ichitaro Portable with oreplug, Hanako 2006 through 2013, Hanako Police, Hanako Police 3, and Hanako Police 2010 allows remote attackers to execute arbitrary code via a crafted file."
},
{
"lang": "es",
"value": "Vulnerabilidad sin especificar en JustSystems Ichitaro v2006 y 2007, el Gobierno Ichitaro 2006 y 2007, Ichitaro portátil con oreplug, Hanako 2006 hasta 2013, Hanako Policía, Policía Hanako 3 y Hanako Police 2010 permite a atacantes remotos ejecutar código arbitrario a través de un archivo manipulado."
}
],
"lastModified": "2026-06-16T23:49:55.803",
"configurations": [
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:a:justsystems:hanako:2006:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "B99AFDF7-D3AE-4565-9AE2-85642724DC00"
},
{
"criteria": "cpe:2.3:a:justsystems:hanako:2007:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "934D152B-FD10-418D-8C08-28BD45442B1D"
},
{
"criteria": "cpe:2.3:a:justsystems:hanako:2008:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "BAAA97A6-E654-4882-AFA5-6D5B404672D0"
},
{
"criteria": "cpe:2.3:a:justsystems:hanako:2009:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "5BE91EAC-860C-4E31-8DCE-4F7092B12250"
},
{
"criteria": "cpe:2.3:a:justsystems:hanako:2010:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "0BCBC102-5EBD-4427-B741-40DF5EEB1AEA"
},
{
"criteria": "cpe:2.3:a:justsystems:hanako:2011:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "2F1615FC-6D1D-4333-85E3-3C77F23EC2E2"
},
{
"criteria": "cpe:2.3:a:justsystems:hanako:2012:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "D1D9903B-4F6F-4D25-A5EB-3D4C5791B2F5"
},
{
"criteria": "cpe:2.3:a:justsystems:hanako:2013:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "289D3E55-483B-407F-A1C9-5DCF21E14F6E"
},
{
"criteria": "cpe:2.3:a:justsystems:hanako_police:-:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "8F075EDD-D4AE-48A1-AD62-D1F4E9FD2E65"
},
{
"criteria": "cpe:2.3:a:justsystems:hanako_police:2010:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "361E77E7-DD90-4E3D-BFA7-3C48C7DED979"
},
{
"criteria": "cpe:2.3:a:justsystems:hanako_police3:-:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "66B9E254-5474-4615-BDBA-A9A8B2D009F8"
},
{
"criteria": "cpe:2.3:a:justsystems:ichitaro:2006:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "9E7E7611-56FC-4379-99FE-8D42046FA9C8"
},
{
"criteria": "cpe:2.3:a:justsystems:ichitaro:2006:-:government:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "AA38365F-0FB9-4570-8A38-4FCC9AADA267"
},
{
"criteria": "cpe:2.3:a:justsystems:ichitaro:2007:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "A749FA56-6DE2-48A4-902C-6EB7E6575BA3"
},
{
"criteria": "cpe:2.3:a:justsystems:ichitaro:2007:-:government:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "6A5C721C-CA01-4C6A-AC7C-C07FC3A333D3"
},
{
"criteria": "cpe:2.3:a:justsystems:ichitaro_portable:-:oreplug:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "9DD0D5AC-5B8D-44FF-9E83-52F79775883C"
}
],
"operator": "OR"
}
]
}
],
"sourceIdentifier": "vultures@jpcert.or.jp"
}