← Back

Nec

nec

122 CVEs • 348 products

Products (348)

Click to collapse
Toggle
Clusterpro X
clusterpro_x
Asl Ux 4800
asl_ux_4800
Up Ux V
up-ux_v
Ews Ux V
ews-ux_v
Socks 5
socks_5
Goah Intrasv
goah_intrasv
Ix1010
ix1010
Ix1011
ix1011
Ix1020
ix1020
Ix1050
ix1050

CVEs (122)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Nec
1Aterm Hc100rc Firmware
Nov 21, 2024
Jan 9, 2019
N/A· v4
7.2 HIGH· v3
9.0 HIGH· v2
Aterm HC100RC Ver1.0.1 and earlier allows attacker with administrator rights to execute arbitrary OS commands via export.cgi encKey parameter.
1Nec
1Aterm Hc100rc Firmware
Nov 21, 2024
Jan 9, 2019
N/A· v4
7.2 HIGH· v3
9.0 HIGH· v2
Aterm HC100RC Ver1.0.1 and earlier allows attacker with administrator rights to execute arbitrary OS commands via FactoryPassword parameter of a certain URL, different URL from CVE-2018-0634.
1Nec
1Aterm Hc100rc Firmware
Nov 21, 2024
Jan 9, 2019
N/A· v4
7.2 HIGH· v3
9.0 HIGH· v2
Aterm HC100RC Ver1.0.1 and earlier allows attacker with administrator rights to execute arbitrary OS commands via filename parameter.
1Nec
1Aterm Hc100rc Firmware
Nov 21, 2024
Jan 9, 2019
N/A· v4
7.2 HIGH· v3
9.0 HIGH· v2
Aterm HC100RC Ver1.0.1 and earlier allows attacker with administrator rights to execute arbitrary OS commands via FactoryPassword parameter or bootmode parameter of a certain URL.
1Nec
1Aterm W300p Firmware
Nov 21, 2024
Jan 9, 2019
N/A· v4
7.2 HIGH· v3
6.5 MEDIUM· v2
Buffer overflow in Aterm W300P Ver1.0.13 and earlier allows attacker with administrator rights to execute arbitrary code via submit-url parameter.
1Nec
1Aterm W300p Firmware
Nov 21, 2024
Jan 9, 2019
N/A· v4
7.2 HIGH· v3
6.5 MEDIUM· v2
Buffer overflow in Aterm W300P Ver1.0.13 and earlier allows attacker with administrator rights to execute arbitrary code via HTTP request and response.
1Nec
1Aterm W300p Firmware
Nov 21, 2024
Jan 9, 2019
N/A· v4
7.2 HIGH· v3
9.0 HIGH· v2
Aterm W300P Ver1.0.13 and earlier allows attacker with administrator rights to execute arbitrary OS commands via targetAPSsid parameter.
1Nec
1Aterm W300p Firmware
Nov 21, 2024
Jan 9, 2019
N/A· v4
7.2 HIGH· v3
9.0 HIGH· v2
Aterm W300P Ver1.0.13 and earlier allows attacker with administrator rights to execute arbitrary OS commands via sysCmd parameter.
1Nec
1Aterm W300p Firmware
Nov 21, 2024
Jan 9, 2019
N/A· v4
7.2 HIGH· v3
9.0 HIGH· v2
Aterm W300P Ver1.0.13 and earlier allows attacker with administrator rights to execute arbitrary OS commands via HTTP request and response.
1Nec
1Aterm Wg1200hp Firmware
Nov 21, 2024
Jan 9, 2019
N/A· v4
7.2 HIGH· v3
9.0 HIGH· v2
Aterm WG1200HP firmware Ver1.0.31 and earlier allows attacker with administrator rights to execute arbitrary OS commands via HTTP request and response.
1Nec
1Aterm Wg1200hp Firmware
Nov 21, 2024
Jan 9, 2019
N/A· v4
7.2 HIGH· v3
9.0 HIGH· v2
Aterm WG1200HP firmware Ver1.0.31 and earlier allows attacker with administrator rights to execute arbitrary OS commands via targetAPSsid parameter.
1Nec
1Aterm Wg1200hp Firmware
Nov 21, 2024
Jan 9, 2019
N/A· v4
7.2 HIGH· v3
9.0 HIGH· v2
Aterm WG1200HP firmware Ver1.0.31 and earlier allows attacker with administrator rights to execute arbitrary OS commands via sysCmd in formWsc parameter.
1Nec
1Aterm Wg1200hp Firmware
Nov 21, 2024
Jan 9, 2019
N/A· v4
7.2 HIGH· v3
9.0 HIGH· v2
Aterm WG1200HP firmware Ver1.0.31 and earlier allows attacker with administrator rights to execute arbitrary OS commands via formSysCmd parameter.
1Nec
1Univerge Sv9100 Webpro Firmware
Nov 21, 2024
Dec 26, 2018
N/A· v4
9.8 CRITICAL· v3
5.0 MEDIUM· v2
NEC Univerge Sv9100 WebPro 6.00.00 devices have Cleartext Password Storage in the Web UI.
1Nec
1Univerge Sv9100 Webpro Firmware
Nov 21, 2024
Dec 26, 2018
N/A· v4
9.8 CRITICAL· v3
5.0 MEDIUM· v2
NEC Univerge Sv9100 WebPro 6.00.00 devices have Predictable Session IDs that result in Account Information Disclosure via Home.htm?sessionId=#####&GOTO(8) URIs.
1Nec
1Expresscluster X
May 6, 2026
Jan 30, 2016
N/A· v4
7.5 HIGH· v3
7.8 HIGH· v2
Directory traversal vulnerability in WebManager in NEC EXPRESSCLUSTER X through 3.3 11.31 on Windows and through 3.3 3.3.1-1 on Linux and Solaris allows remote attackers to read arbitrary files via unspecified vectors.
1Nec
12Ip38x 1000
Ip38x 105Ip38x 107e+9 more
Apr 29, 2026
Jan 23, 2014
N/A· v4
N/A· v3
6.8 MEDIUM· v2
The OSPF implementation on NEC IP38X, IX1000, IX2000, and IX3000 routers does not consider the possibility of duplicate Link State ID values in Link State Advertisement (LSA) packets before performing operations on the L...Show more
The OSPF implementation on NEC IP38X, IX1000, IX2000, and IX3000 routers does not consider the possibility of duplicate Link State ID values in Link State Advertisement (LSA) packets before performing operations on the LSA database, which allows remote attackers to cause a denial of service (routing disruption) or obtain sensitive packet information via a crafted LSA packet, a related issue to CVE-2013-0149.Show less
1Nec
6Atermwm3450rn
Atermwm3600rAtermwr8160n+3 more
Apr 29, 2026
Mar 19, 2013
N/A· v4
N/A· v3
6.8 MEDIUM· v2
Multiple cross-site request forgery (CSRF) vulnerabilities in the web-based management utility on the NEC AtermWR9500N, AtermWR8600N, AtermWR8370N, AtermWR8160N, AtermWM3600R, and AtermWM3450RN routers allow remote attac...Show more
Multiple cross-site request forgery (CSRF) vulnerabilities in the web-based management utility on the NEC AtermWR9500N, AtermWR8600N, AtermWR8370N, AtermWR8160N, AtermWM3600R, and AtermWM3450RN routers allow remote attackers to hijack the authentication of administrators for requests that (1) initialize settings or (2) reboot the device.Show less
1Nec
1Universal Raid Utility
Apr 29, 2026
Feb 22, 2013
N/A· v4
N/A· v3
9.0 HIGH· v2
NEC Universal RAID Utility 1.40 Rev 680 and earlier, 2.31 Rev 1492 and earlier, and 2.5 Rev 2244 and earlier does not provide access control, which allows remote attackers to perform arbitrary RAID disk operations via un...Show more
NEC Universal RAID Utility 1.40 Rev 680 and earlier, 2.31 Rev 1492 and earlier, and 2.5 Rev 2244 and earlier does not provide access control, which allows remote attackers to perform arbitrary RAID disk operations via unspecified vectors.Show less
2Nec
Yamaha
52Ip38x/1000
Ip38x/103Ip38x/105+49 more
Apr 29, 2026
May 9, 2011
N/A· v4
N/A· v3
7.8 HIGH· v2
Yamaha RTX, RT, SRT, RTV, RTW, and RTA series routers with firmware 6.x through 10.x, and NEC IP38X series routers with firmware 6.x through 10.x, do not properly handle IP header options, which allows remote attackers t...Show more
Yamaha RTX, RT, SRT, RTV, RTW, and RTA series routers with firmware 6.x through 10.x, and NEC IP38X series routers with firmware 6.x through 10.x, do not properly handle IP header options, which allows remote attackers to cause a denial of service (device reboot) via a crafted option that triggers access to an invalid memory location.Show less