Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Justsystems

First CVE: Sep 4, 2008Active for: 18 yearsTotal CVEs: 32
40.8
VTI Score
High

Justsystems develops a line of document and office productivity applications, with primary exposure centered on its Ichitaro suite, which has established a presence among users in East Asian markets. The vendor's vulnerability profile spans a meaningful share of serious-severity outcomes across its product family, reflecting the parsing and memory-management complexity inherent to native document-processing software. Recurring weakness classes include buffer-overflow conditions, out-of-bounds memory writes, and improper input validation in document parsers, which are characteristic vulnerabilities in legacy productivity suites that handle untrusted file formats. Defenders should prioritize patches for internet-exposed Ichitaro instances and consider restricting document handling from untrusted sources; live severity, exploitation, and exposure counts are shown alongside this summary.

FAUCET AI Generated
32
Total CVEs
More Total CVEs than 97% of tracked vendors
0.0
Avg CVEs / Product / Year
Bottom 1%
8.3
Avg CVSS Score
Higher Avg CVSS Score than 81% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Justsystems over time

Volume of CVEsAvg CVSS Base Score
First CVE
Sep 4, 2008
17 years ago
Most Recent CVE
Oct 19, 2023
1,009 days ago

Products(102 total)

Top CVEs

Signals from CVEs in this vendor scope (32 CVEs).

32 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2017-2790CRITICAL
When processing a record type of 0x3c from a Workbook stream from an Excel file (.xls), JustSystems Ichitaro Office trusts that the size is greater than zero, subtracts one from th
Feb 24, 20179.831NONO
CVE-2017-2789CRITICAL
When copying filedata into a buffer, JustSystems Ichitaro Office 2016 Trial will calculate two values to determine how much data to copy from the document. If both of these values
Feb 24, 20179.831NONO
CVE-2013-5990HIGH
Unspecified vulnerability in JustSystems Ichitaro 2006 through 2011; Ichitaro Government 6, 7, and 2006 through 2010; Ichitaro 2011 Sou; Ichitaro 2012 Shou; Ichitaro 2013 Gen and G
Nov 13, 20139.331NONO
CVE-2022-36344CRITICAL
An unquoted search path vulnerability exists in 'JustSystems JUST Online Update for J-License' bundled with multiple products for corporate users as in Ichitaro through Pro5 and ot
Aug 16, 20229.830NONO
CVE-2011-1331HIGH
JustSystems Ichitaro 2005 through 2011, Ichitaro Government 6, Ichitaro Government 2006 through 2010, Ichitaro Portable, Ichitaro Pro, and Ichitaro Viewer allow remote attackers to
Jul 18, 20119.330NONO
CVE-2010-3915HIGH
Unspecified vulnerability in JustSystems Ichitaro and Ichitaro Government allows remote attackers to execute arbitrary code via a crafted document, a different vulnerability than C
Nov 6, 20109.329NONO
CVE-2012-0269HIGH
Buffer overflow in JustSystems Ichitaro 2011 Sou, Ichitaro 2006 through 2011, Ichitaro Government 2006 through 2010, Ichitaro Portable with oreplug, Ichitaro Viewer, JUST School, J
Apr 27, 20129.328NONO
CVE-2010-3916HIGH
Unspecified vulnerability in JustSystems Ichitaro and Ichitaro Government allows remote attackers to execute arbitrary code via a crafted document, a different vulnerability than C
Nov 6, 20109.328NONO
CVE-2010-2152HIGH
Unspecified vulnerability in JustSystems Ichitaro 2004 through 2009, Ichitaro Government 2006 through 2009, and Just School 2008 and 2009 allows remote attackers to execute arbitra
Jun 3, 20109.328NONO
CVE-2014-7247HIGH
Unspecified vulnerability in JustSystems Ichitaro 2008 through 2011; Ichitaro Government 6, 7, 2008, 2009, and 2010; Ichitaro Pro; Ichitaro Pro 2; Ichitaro 2011 Sou; Ichitaro 2012
Nov 26, 201410.026NONO
View all 32 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products32 CVEs
9%
81%
9%
Severity distribution among all CVEs352,294 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local11 (34.4%)
Network4 (12.5%)
Unknown17 (53.1%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low15 (46.9%)
High0 (0.0%)
Unknown17 (53.1%)
User Interaction
None3 (9.4%)
Unknown17 (53.1%)
Required12 (37.5%)
Privileges Required
Low0 (0.0%)
High1 (3.1%)
None14 (43.8%)
Unknown17 (53.1%)

Exploit Exposure

Signals from CVEs in this vendor scope (32 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Justsystems.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Justsystems — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Justsystems's Products

View all 4 CNAs →

Top CWEs