Published: 2017/06/23  Last Updated: 2017/06/23

Information from Charamin steering committee

Vulnerability ID:JVN#09293613
Title:Installer of Charamin OMP may insecurely load Dynamic Link Libraries
Status:Vulnerable

This is a statement from the vendor itself with no modification by JPCERT/CC.

The installer of Charamin OMP Version 1.1.7.4 and earlier or 1.2.0.0 Beta and earlier has vulnerability that loads an unintended DLL.
Therefore, arbitrary code may be executed when the installer starts to install.
This vulnerability affects only to install. It don't affect the use of Charamin OMP.

Information of this vulnerability is published at the following URL. (in Japanese)
http://www.charamin.jp/security_001.aspx