CVE-2023-39546: High severity nec expresscluster x vulnerability
CLUSTERPRO X Ver5.1 and earlier and EXPRESSCLUSTER X 5.1 and earlier, CLUSTERPRO X SingleServerSafe 5.1 and earlier, EXPRESSCLUSTER X SingleServerSafe 5.1 and earlier allows a attacker to log in to the product may execute an arbitrary command.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2023-39546?
CVE-2023-39546 is a vulnerability in CLUSTERPRO X Ver5.1 and earlier and EXPRESSCLUSTER X 5.1 and earlier, where an attacker can log in to the product and execute an arbitrary command.
How severe is the CVE-2023-39546 vulnerability?
The severity of CVE-2023-39546 is rated as high, with a CVSS score of 8.8.
Which software versions are affected by CVE-2023-39546?
CLUSTERPRO X Ver5.1 and earlier and EXPRESSCLUSTER X 5.1 and earlier, along with specific versions of NEC Expresscluster X and NEC Expresscluster X Singleserversafe, are affected by CVE-2023-39546.
How can an attacker exploit CVE-2023-39546?
An attacker can exploit CVE-2023-39546 by logging in to the affected product and executing arbitrary commands.
Is there a fix available for CVE-2023-39546?
Yes, NEC has released a security advisory with details on how to mitigate the CVE-2023-39546 vulnerability. Please refer to the official NEC website for the fix.