CVE-2021-20701

Severity
9.8CRITICAL
EPSS
1.6%
top 18.16%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedNov 3
Latest updateMay 24

Description

Buffer overflow vulnerability in the Disk Agent CLUSTERPRO X 4.3 for Windows and earlier, EXPRESSCLUSTER X 4.3 for Windows and earlier, CLUSTERPRO X 4.3 SingleServerSafe for Windows and earlier, EXPRESSCLUSTER X 4.3 SingleServerSafe for Windows and earlier allows attacker to remote code execution via a network.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HExploitability: 3.9 | Impact: 5.9

Affected Packages5 packages

NVDnec/clusterpro_x1.04.3
NVDnec/expresscluster_x1.04.3
CVEListV5nec_corporation/clusterpro_xCLUSTERPRO X 4.3 for Windows and earlier, EXPRESSCLUSTER X 4.3 for Windows and earlier, CLUSTERPRO X 4.3 SingleServerSafe for Windows and earlier, EXPRESSCLUSTER X 4.3 SingleServerSafe for Windows and earlier

🔴Vulnerability Details

2
GHSA
GHSA-pm2r-r7fg-8fg9: Buffer overflow vulnerability in the Disk Agent CLUSTERPRO X 12022-05-24
CVEList
CVE-2021-20701: Buffer overflow vulnerability in the Disk Agent CLUSTERPRO X 42021-11-02
CVE-2021-20701 (CRITICAL CVSS 9.8) | Buffer overflow vulnerability in th | cvebase.io