CVE-2023-43762

Certain WithSecure products allow Unauthenticated Remote Code Execution via the web server (backend). This affects WithSecure Policy Manager 15 and Policy Manager Proxy 15.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:withsecure:f-secure_policy_manager:15.00:*:*:*:*:linux_kernel:*:*
cpe:2.3:a:withsecure:f-secure_policy_manager:15.00:*:*:*:*:windows:*:*
cpe:2.3:a:withsecure:policy_manager_proxy:15.00:*:*:*:*:linux_kernel:*:*
cpe:2.3:a:withsecure:policy_manager_proxy:15.00:*:*:*:*:windows:*:*

History

13 Oct 2023, 16:15

Type Values Removed Values Added
References
  • (MISC) https://www.withsecure.com/en/support/security-advisories/cve-2023-43762 -
Summary Certain WithSecure products allow Unauthenticated Remote Code Execution via the web server (backend), issue 1 of 2. This affects WithSecure Policy Manager 15 and Policy Manager Proxy 15. Certain WithSecure products allow Unauthenticated Remote Code Execution via the web server (backend). This affects WithSecure Policy Manager 15 and Policy Manager Proxy 15.

26 Sep 2023, 15:06

Type Values Removed Values Added
CPE cpe:2.3:a:withsecure:f-secure_policy_manager:15.00:*:*:*:*:linux_kernel:*:*
cpe:2.3:a:withsecure:f-secure_policy_manager:15.00:*:*:*:*:windows:*:*
cpe:2.3:a:withsecure:policy_manager_proxy:15.00:*:*:*:*:linux_kernel:*:*
cpe:2.3:a:withsecure:policy_manager_proxy:15.00:*:*:*:*:windows:*:*
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 9.8
CWE NVD-CWE-noinfo
References (MISC) https://www.withsecure.com/en/support/security-advisories/cve-2023-nnn511 - (MISC) https://www.withsecure.com/en/support/security-advisories/cve-2023-nnn511 - Broken Link
References (MISC) https://www.withsecure.com/en/support/security-advisories - (MISC) https://www.withsecure.com/en/support/security-advisories - Vendor Advisory
First Time Withsecure
Withsecure f-secure Policy Manager
Withsecure policy Manager Proxy

22 Sep 2023, 05:15

Type Values Removed Values Added
New CVE

Information

Published : 2023-09-22 05:15

Updated : 2023-12-10 15:14


NVD link : CVE-2023-43762

Mitre link : CVE-2023-43762

CVE.ORG link : CVE-2023-43762


JSON object : View

Products Affected

withsecure

  • f-secure_policy_manager
  • policy_manager_proxy