CVE-2021-20706: Input Validation
Improper input validation vulnerability in the WebManager CLUSTERPRO X 4.3 for Windows and earlier, EXPRESSCLUSTER X 4.3 for Windows and earlier, CLUSTERPRO X 4.3 SingleServerSafe for Windows and earlier, EXPRESSCLUSTER X 4.3 SingleServerSafe for Windows and earlier allows attacker to remote file upload via network.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2021-20706?
CVE-2021-20706 is an improper input validation vulnerability in the WebManager CLUSTERPRO X 4.3 for Windows and earlier, EXPRESSCLUSTER X 4.3 for Windows and earlier, CLUSTERPRO X 4.3 SingleServerSafe for Windows and earlier, EXPRESSCLUSTER X 4.3 SingleServerSafe for Windows and earlier.
How does CVE-2021-20706 affect NEC Clusterpro X?
CVE-2021-20706 affects NEC Clusterpro X versions 1.0 to 4.3 for Windows and earlier.
How does CVE-2021-20706 affect NEC Clusterpro X Singleserversafe?
CVE-2021-20706 affects NEC Clusterpro X Singleserversafe versions 1.0 to 4.3 for Windows and earlier.
How does CVE-2021-20706 affect NEC Expresscluster X?
CVE-2021-20706 affects NEC Expresscluster X versions 1.0 to 4.3 for Windows and earlier.
How does CVE-2021-20706 affect NEC Expresscluster X Singleserversafe?
CVE-2021-20706 affects NEC Expresscluster X Singleserversafe versions 1.0 to 4.3 for Windows and earlier.
What is the severity of CVE-2021-20706?
CVE-2021-20706 has a severity rating of 7.5 (high).
What is the CWE ID for CVE-2021-20706?
CVE-2021-20706 is associated with CWE-20, which is the weakness category for Improper Input Validation.
How can I fix CVE-2021-20706?
To fix CVE-2021-20706, it is recommended to update to the latest version of NEC Clusterpro X, NEC Clusterpro X Singleserversafe, NEC Expresscluster X, or NEC Expresscluster X Singleserversafe.
Where can I find more information about CVE-2021-20706?
More information about CVE-2021-20706 can be found at the following link: [CVE-2021-20706](https://jpn.nec.com/security-info/secinfo/nv21-015_en.html).