# CVE-2023-39546

## Summary

- **CVE ID:** CVE-2023-39546
- **Severity:** UNKNOWN
- **CVSS Score:** 0
- **CWE:** CWE-836
- **Published:** Nov 17, 2023
- **Last Modified:** Mar 13, 2026

## Description

CLUSTERPRO X Ver5.1 and earlier and EXPRESSCLUSTER X 5.1 and earlier, CLUSTERPRO X SingleServerSafe 5.1 and earlier, EXPRESSCLUSTER X SingleServerSafe 5.1 and earlier allows a attacker to log in to the product may execute an arbitrary command.

## Affected Products

- NEC Corporation — CLUSTERPRO X (EXPRESSCLUSTER X) (1.0, 2.0 2.1, 3.0, 3.1, 3.2, 4.0, 4.1, 4.2, 5.0 and 5.1)
- NEC Corporation — CLUSTERPRO X SingleServerSafe (EXPRESSCLUSTER X SingleServerSafe) (1.0, 2.0 2.1, 3.0, 3.1, 3.2, 4.0, 4.1, 4.2, 5.0 and 5.1)

## References

- [CNA](https://jpn.nec.com/security-info/secinfo/nv23-009_en.html)

## Exploitation Prediction (EPSS)

- **EPSS Score:** 0.07%
- **EPSS Percentile:** 21.3

---
_Exported from OnDuty AI Vulnerability Intelligence on 2026-09-11._