Known Vulnerabilities for products from Nec

Listed below are 20 of the newest known vulnerabilities associated with the vendor "Nec".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Additional devices specifications by Nec can be found at device.report : Nec

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2021-20740 Hitachi Virtual File Platform Versions prior to 5.5.3-09 and Versions prior to 6.4.3-09, and NEC Storage M Series NAS Gateway... 8.8 - HIGH 2021-06-28 2021-07-06
CVE-2021-20712 Improper access control vulnerability in NEC Aterm WG2600HS firmware Ver1.5.1 and earlier, and Aterm WX3000HP firmware Ver1.1... 5.3 - MEDIUM 2021-04-26 2022-07-12
CVE-2021-20711 Aterm WG2600HS firmware Ver1.5.1 and earlier allows an attacker to execute arbitrary OS commands via unspecified vectors. 9.8 - CRITICAL 2021-04-26 2021-04-30
CVE-2021-20709 Improper validation of integrity check value vulnerability in NEC Aterm WF1200CR firmware Ver1.3.2 and earlier, Aterm WG1200C... 7.2 - HIGH 2021-04-26 2021-05-05
CVE-2021-20708 NEC Aterm devices (Aterm WF1200CR firmware Ver1.3.2 and earlier, Aterm WG1200CR firmware Ver1.3.3 and earlier, and Aterm WG26... 7.2 - HIGH 2021-04-26 2021-05-05
CVE-2021-20707 Improper input validation vulnerability in the Transaction Server CLUSTERPRO X 4.3 for Windows and earlier, EXPRESSCLUSTER X ... 7.5 - HIGH 2021-11-03 2023-11-07
CVE-2021-20706 Improper input validation vulnerability in the WebManager CLUSTERPRO X 4.3 for Windows and earlier, EXPRESSCLUSTER X 4.3 for ... 7.5 - HIGH 2021-11-03 2023-11-07
CVE-2021-20705 Improper input validation vulnerability in the WebManager CLUSTERPRO X 4.3 for Windows and earlier, EXPRESSCLUSTER X 4.3 for ... 7.5 - HIGH 2021-11-03 2023-11-07
CVE-2021-20704 Buffer overflow vulnerability in the compatible API with previous versions CLUSTERPRO X 4.3 for Windows and earlier, EXPRESSC... 9.8 - CRITICAL 2021-11-03 2023-11-07
CVE-2021-20703 Buffer overflow vulnerability in the Transaction Server CLUSTERPRO X 4.3 for Windows and earlier, EXPRESSCLUSTER X 4.3 for Wi... 9.8 - CRITICAL 2021-11-03 2023-11-07
CVE-2021-20702 Buffer overflow vulnerability in the Transaction Server CLUSTERPRO X 4.3 for Windows and earlier, EXPRESSCLUSTER X 4.3 for Wi... 9.8 - CRITICAL 2021-11-03 2023-11-07
CVE-2021-20701 Buffer overflow vulnerability in the Disk Agent CLUSTERPRO X 4.3 for Windows and earlier, EXPRESSCLUSTER X 4.3 for Windows an... 9.8 - CRITICAL 2021-11-03 2023-11-07
CVE-2021-20700 Buffer overflow vulnerability in the Disk Agent CLUSTERPRO X 4.3 for Windows and earlier, EXPRESSCLUSTER X 4.3 for Windows an... 9.8 - CRITICAL 2021-11-03 2023-11-07
CVE-2021-20680 Cross-site scripting vulnerability in NEC Aterm devices (Aterm WG1900HP2 firmware Ver.1.3.1 and earlier, Aterm WG1900HP firmw... 6.1 - MEDIUM 2021-04-26 2021-05-05
CVE-2021-20653 Calsos CSDJ (CSDJ-B 01.08.00 and earlier, CSDJ-H 01.08.00 and earlier, CSDJ-D 01.08.00 and earlier, and CSDJ-A 03.08.00 and e... 5.3 - MEDIUM 2021-02-17 2021-02-23
CVE-2020-27859 This vulnerability allows remote attackers to disclose sensitive information on affected installations of NEC ESMPRO Manager ... 7.5 - HIGH 2021-01-20 2021-01-26
CVE-2020-17408 This vulnerability allows remote attackers to disclose sensitive information on affected installations of NEC ExpressCluster ... 7.5 - HIGH 2020-09-10 2020-09-15
CVE-2020-12695 The Open Connectivity Foundation UPnP specification before 2020-04-17 does not forbid the acceptance of a subscription reques... 7.5 - HIGH 2020-06-08 2023-11-07
CVE-2020-10917 This vulnerability allows remote attackers to execute arbitrary code on affected installations of NEC ESMPRO Manager 6.42. Au... 9.8 - CRITICAL 2020-07-22 2020-07-28
CVE-2020-5686 Incorrect implementation of authentication algorithm issue in UNIVERGE SV9500 series from V1 to V7and SV8500 series from S6 t... 7.5 - HIGH 2021-01-13 2021-01-21

Known software with vulnerabilities from Nec

Type Vendor Product Version
Operating
System
NecAsl Ux 4800-
HardwareNecAterm Wf1200c-
Operating
System
NecAterm Wf1200c Firmware1.2.1
Operating
System
NecAterm Wg1200cr Firmware1.2.1
HardwareNecAterm Wg2600hs-
Operating
System
NecAterm Wg2600hs Firmware1.3.2
HardwareNecBluefire Ix1035 Router-
ApplicationNecEsmpro Manager6.42
Operating
System
NecEws-ux V-
ApplicationNecExpresscluster X3.3
ApplicationNecInfocage Siteshell1.4
HardwareNecIx1010-
HardwareNecIx1011-
HardwareNecIx1020-
HardwareNecIx1050-
HardwareNecIx2010-
HardwareNecMultiwriter 1700c-
HardwareNecSl1100-
Operating
System
NecSl1100 Firmware-
HardwareNecSl2100-