Vulnerability index

Browse CVEs

102 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Univerge Dt830 Firmware MEDIUM 5.3
CVE-2021-44746

UNIVERGE DT 820 V3.2.7.0 and prior, UNIVERGE DT 830 V5.2.7.0 and prior, UNIVERGE DT 930 V2.4.0.0 and prior, IP Phone Manager V8.9.1 and prior, Data M…

Fix: after 8.9.1
Fix from $1,600 2022-02-01
Clusterpro X CRITICAL 9.8
CVE-2021-20700

Buffer overflow vulnerability in the Disk Agent CLUSTERPRO X 4.3 for Windows and earlier, EXPRESSCLUSTER X 4.3 for Windows and earlier, CLUSTERPRO X …

Fix: after 4.3
Fix from $2,300 2021-11-03
Clusterpro X CRITICAL 9.8
CVE-2021-20701

Buffer overflow vulnerability in the Disk Agent CLUSTERPRO X 4.3 for Windows and earlier, EXPRESSCLUSTER X 4.3 for Windows and earlier, CLUSTERPRO X …

Fix: after 4.3
Fix from $2,300 2021-11-03
Clusterpro X CRITICAL 9.8
CVE-2021-20702

Buffer overflow vulnerability in the Transaction Server CLUSTERPRO X 4.3 for Windows and earlier, EXPRESSCLUSTER X 4.3 for Windows and earlier, CLUST…

Fix: after 4.3
Fix from $2,300 2021-11-03
Clusterpro X CRITICAL 9.8
CVE-2021-20703

Buffer overflow vulnerability in the Transaction Server CLUSTERPRO X 4.3 for Windows and earlier, EXPRESSCLUSTER X 4.3 for Windows and earlier, CLUST…

Fix: after 4.3
Fix from $2,300 2021-11-03
Clusterpro X CRITICAL 9.8
CVE-2021-20704

Buffer overflow vulnerability in the compatible API with previous versions CLUSTERPRO X 4.3 for Windows and earlier, EXPRESSCLUSTER X 4.3 for Windows…

Fix: after 4.3
Fix from $2,300 2021-11-03
Clusterpro X HIGH 7.5
CVE-2021-20705

Improper input validation vulnerability in the WebManager CLUSTERPRO X 4.3 for Windows and earlier, EXPRESSCLUSTER X 4.3 for Windows and earlier, CLU…

Fix: after 4.3
Fix from $1,950 2021-11-03
Clusterpro X HIGH 7.5
CVE-2021-20706

Improper input validation vulnerability in the WebManager CLUSTERPRO X 4.3 for Windows and earlier, EXPRESSCLUSTER X 4.3 for Windows and earlier, CLU…

Fix: after 4.3
Fix from $1,950 2021-11-03
Clusterpro X HIGH 7.5
CVE-2021-20707

Improper input validation vulnerability in the Transaction Server CLUSTERPRO X 4.3 for Windows and earlier, EXPRESSCLUSTER X 4.3 for Windows and earl…

Fix: after 4.3
Fix from $1,950 2021-11-03
Aterm Wg2600hs Firmware CRITICAL 9.8
CVE-2021-20711

Aterm WG2600HS firmware Ver1.5.1 and earlier allows an attacker to execute arbitrary OS commands via unspecified vectors.

Fix: after 1.5.1
Fix from $2,300 2021-04-26
Aterm Wg2600hs Firmware MEDIUM 5.3
CVE-2021-20712

Improper access control vulnerability in NEC Aterm WG2600HS firmware Ver1.5.1 and earlier, and Aterm WX3000HP firmware Ver1.1.2 and earlier allows a …

Fix: after 1.5.1
Fix from $1,600 2021-04-26
Aterm Wf1200cr Firmware HIGH 7.2
CVE-2021-20708

NEC Aterm devices (Aterm WF1200CR firmware Ver1.3.2 and earlier, Aterm WG1200CR firmware Ver1.3.3 and earlier, and Aterm WG2600HS firmware Ver1.5.1 a…

Fix: after 1.5.1
Fix from $1,950 2021-04-26
Aterm Wf1200cr Firmware HIGH 7.2
CVE-2021-20709

Improper validation of integrity check value vulnerability in NEC Aterm WF1200CR firmware Ver1.3.2 and earlier, Aterm WG1200CR firmware Ver1.3.3 and …

Fix: after 1.5.1
Fix from $1,950 2021-04-26
Aterm Wg1900hp2 Firmware MEDIUM 6.1
CVE-2021-20680

Cross-site scripting vulnerability in NEC Aterm devices (Aterm WG1900HP2 firmware Ver.1.3.1 and earlier, Aterm WG1900HP firmware Ver.2.5.1 and earlie…

Fix: after 2.5.1
Fix from $1,600 2021-04-26
Csdj B Firmware MEDIUM 5.3
CVE-2021-20653

Calsos CSDJ (CSDJ-B 01.08.00 and earlier, CSDJ-H 01.08.00 and earlier, CSDJ-D 01.08.00 and earlier, and CSDJ-A 03.08.00 and earlier) allows remote at…

Fix: after 03.08.00
Fix from $1,600 2021-02-17
Esmpro Manager HIGH 7.5
CVE-2020-27859

This vulnerability allows remote attackers to disclose sensitive information on affected installations of NEC ESMPRO Manager 6.42. Authentication is …

Mitigation only
Fix from $1,950 2021-01-20
Univerge Sv9500 Firmware CRITICAL 9.8
CVE-2020-5685

UNIVERGE SV9500 series from V1 to V7and SV8500 series from S6 to S8 allows an attacker to execute arbitrary OS commands or cause a denial-of-service …

Mitigation only
Fix from $2,300 2021-01-13
Univerge Sv9500 Firmware HIGH 7.5
CVE-2020-5686

Incorrect implementation of authentication algorithm issue in UNIVERGE SV9500 series from V1 to V7and SV8500 series from S6 to S8 allows an attacker …

Mitigation only
Fix from $1,950 2021-01-13
Baseboard Management Controller CRITICAL 9.8
CVE-2020-5633

Multiple NEC products (Express5800/T110j, Express5800/T110j-S, Express5800/T110j (2nd-Gen), Express5800/T110j-S (2nd-Gen), iStorage NS100Ti, and Expr…

Fix: after 1.09
Fix from $2,300 2021-01-13
Infocage Siteshell HIGH 7.8
CVE-2020-5632

InfoCage SiteShell series (Host type SiteShell for IIS V1.4, V1.5, and V1.6, Host type SiteShell for IIS prior to revision V2.0.0.6, V2.1.0.7, V2.1.1…

Fix: 2.0.0.6 / 2.1.0.7+
Fix from $1,950 2020-10-06
Expresscluster X HIGH 7.5
CVE-2020-17408EPSS 74%

This vulnerability allows remote attackers to disclose sensitive information on affected installations of NEC ExpressCluster 4.1. Authentication is n…

Patch available
Fix from $1,950 2020-09-10
Sv9100 Firmware CRITICAL 9.8
CVE-2019-20025

Certain builds of NEC SV9100 software could allow an unauthenticated, remote attacker to log into a device running an affected release with a hardcod…

Mitigation only
Fix from $2,300 2020-07-29
Sv8100 Firmware CRITICAL 9.8
CVE-2019-20027

Aspire-derived NEC PBXes, including the SV8100, SV9100, SL1100 and SL2100 with software releases 7.0 or higher contain the possibility if incorrectly…

Mitigation only
Fix from $2,300 2020-07-29
Sv8100 Firmware CRITICAL 9.8
CVE-2019-20033

On Aspire-derived NEC PBXes, including all versions of SV8100 devices, a set of documented, static login credentials may be used to access the DIM in…

Mitigation only
Fix from $2,300 2020-07-29
Um8000 Firmware CRITICAL 9.1
CVE-2019-20031

NEC UM8000, UM4730 and prior non-InMail voicemail systems with all known software versions may permit an infinite number of login attempts in the tel…

Mitigation only
Fix from $2,300 2020-07-29
Sv8100 Firmware HIGH 8.8
CVE-2019-20029

An exploitable privilege escalation vulnerability exists in the WebPro functionality of Aspire-derived NEC PBXes, including all versions of SV8100, S…

Mitigation only
Fix from $1,950 2020-07-29
Um8000 Firmware HIGH 7.8
CVE-2019-20030

An attacker with knowledge of the modem access number on a NEC UM8000 voicemail system may use SSH tunneling or standard Linux utilities to gain acce…

Mitigation only
Fix from $1,950 2020-07-29
Sv9100 Firmware HIGH 7.5
CVE-2019-20026

The WebPro interface in NEC SV9100 software releases 7.0 or higher allows unauthenticated remote attackers to reset all existing usernames and passwo…

Mitigation only
Fix from $1,950 2020-07-29
Sv8100 Firmware HIGH 7.5
CVE-2019-20028

Aspire-derived NEC PBXes operating InMail software, including all versions of SV8100, SV9100, SL1100 and SL2100 devices allow unauthenticated read-on…

Mitigation only
Fix from $1,950 2020-07-29
Sv8100 Firmware MEDIUM 6.5
CVE-2019-20032

An attacker with access to an InMail voicemail box equipped with the find me/follow me feature on Aspire-derived NEC PBXes, including all versions of…

Mitigation only
Fix from $1,600 2020-07-29