CVE-2021-20702: Buffer Overflow
Buffer overflow vulnerability in the Transaction Server CLUSTERPRO X 4.3 for Windows and earlier, EXPRESSCLUSTER X 4.3 for Windows and earlier, CLUSTERPRO X 4.3 SingleServerSafe for Windows and earlier, EXPRESSCLUSTER X 4.3 SingleServerSafe for Windows and earlier allows attacker to remote code execution via a network.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2021-20702?
CVE-2021-20702 is a buffer overflow vulnerability in the Transaction Server CLUSTERPRO X, EXPRESSCLUSTER X, CLUSTERPRO X SingleServerSafe, and EXPRESSCLUSTER X SingleServerSafe for Windows.
How severe is the vulnerability CVE-2021-20702?
The severity of CVE-2021-20702 is critical with a CVSS score of 9.8.
Which software versions are affected by CVE-2021-20702?
The affected software versions are NEC Clusterpro X (1.0 to 4.3), NEC Clusterpro X Singleserversafe (1.0 to 4.3), NEC Expresscluster X (1.0 to 4.3), and NEC Expresscluster X Singleserversafe (1.0 to 4.3) for Windows.
What is the CWE ID for CVE-2021-20702?
The CWE ID for CVE-2021-20702 is CWE-119 and CWE-120.
How can I fix the vulnerability CVE-2021-20702?
To fix the vulnerability, it is recommended to update the affected software to a version above 4.3 or apply the necessary patches provided by NEC.