CVE-2021-20705: Input Validation
Improper input validation vulnerability in the WebManager CLUSTERPRO X 4.3 for Windows and earlier, EXPRESSCLUSTER X 4.3 for Windows and earlier, CLUSTERPRO X 4.3 SingleServerSafe for Windows and earlier, EXPRESSCLUSTER X 4.3 SingleServerSafe for Windows and earlier allows attacker to remote file upload via network.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2021-20705?
CVE-2021-20705 is an improper input validation vulnerability in the WebManager CLUSTERPRO X 4.3 for Windows and earlier, EXPRESSCLUSTER X 4.3 for Windows and earlier, CLUSTERPRO X 4.3 SingleServerSafe for Windows and earlier, EXPRESSCLUSTER X 4.3 SingleServerSafe for Windows and earlier.
What is the severity of CVE-2021-20705?
CVE-2021-20705 has a severity level of 7.5 (high).
How does CVE-2021-20705 affect the affected software?
CVE-2021-20705 allows an attacker to remotely upload files on the affected versions of WebManager CLUSTERPRO X, EXPRESSCLUSTER X, CLUSTERPRO X SingleServerSafe, and EXPRESSCLUSTER X SingleServerSafe.
Is there a fix available for CVE-2021-20705?
Yes, NEC has released a security advisory with patches to address the vulnerability. Please refer to the provided reference link for more information.
What is the Common Weakness Enumeration (CWE) ID for CVE-2021-20705?
The CWE ID for CVE-2021-20705 is CWE-20, which represents improper input validation.