Fiche vulnérabilité
CVE-2023-43762 : faille critique withsecure f-secure policy manager (CVSS 9.8)
Description
Certain WithSecure products allow Unauthenticated Remote Code Execution via the web server (backend). This affects WithSecure Policy Manager 15 and Policy Manager Proxy 15.
En bref
- Sévérité
- Critique (CVSS 9.8)
- Vecteur CVSS
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
- Exploitation active
- Non signalée par la CISA
- Publication
- 22 sept. 2023
- Dernière mise à jour
- 17 juin 2026
Produits concernés
- withsecure f-secure policy manager
- withsecure policy manager proxy