What is the NEC CNA?
NEC is a CVE Numbering Authority (CNA) — an organization authorized to assign CVE IDs to vulnerabilities in its scope. It has published 58 CVE records since 2021.
How many CVEs has NEC published?
NEC has published 58 CVE records, including 30 in the last two years.
What is NEC's CVE data quality grade?
RadicalNotion.AI grades NEC's CVE data quality as C, with an overall completeness score of 75.5%. This reflects how consistently its CVE records include vendor (98.3%), product (98.3%), CVSS (25.9%), and CWE (79.3%) information.
What products does NEC publish CVEs for?
NEC most frequently publishes CVEs for expresscluster x, expresscluster x singleserversafe, aterm wg1800hp2 firmware, Aterm WF300HP, Aterm WG1800HP.
Which vendors does NEC cover?
NEC publishes CVEs across 4 distinct vendors, most often nec, NEC Corporation, Sharp Display Solutions, Ltd., NEC Platforms, Ltd., sharp.
Is NEC actively publishing CVEs?
NEC is currently active, based on 30 CVEs in the last two years.
What is the average severity of NEC's CVEs?
The average CVSS base score across NEC's scored CVEs is 7.9.
How many critical CVEs has NEC published?
NEC has published 21 critical-severity CVEs and 9 high-severity CVEs.
Are any of NEC's CVEs in CISA's Known Exploited Vulnerabilities catalog?
No. None of NEC's CVEs are currently listed in CISA's Known Exploited Vulnerabilities (KEV) catalog.
What are the most common weakness types in NEC's CVEs?
NEC's CVEs most often map to these CWE weakness types: CWE-78 (Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')), CWE-22 (Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')), CWE-79 (Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')), CWE-912 (Hidden Functionality).
How does NEC rank among CNAs?
By total CVE volume, NEC ranks #154 of 370 CNAs, and it reports more complete CVE records than 25% of all CNAs.