CVE-2023-43762

Certain WithSecure products allow Unauthenticated Remote Code Execution via the web server (backend). This affects WithSecure Policy Manager 15 and Policy Manager Proxy 15.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:withsecure:f-secure_policy_manager:15.00:*:*:*:*:linux_kernel:*:*
cpe:2.3:a:withsecure:f-secure_policy_manager:15.00:*:*:*:*:windows:*:*
cpe:2.3:a:withsecure:policy_manager_proxy:15.00:*:*:*:*:linux_kernel:*:*
cpe:2.3:a:withsecure:policy_manager_proxy:15.00:*:*:*:*:windows:*:*

History

13 Oct 2023, 16:15

Type Values Removed Values Added
References
  • (MISC) https://www.withsecure.com/en/support/security-advisories/cve-2023-43762 -
Summary Certain WithSecure products allow Unauthenticated Remote Code Execution via the web server (backend), issue 1 of 2. This affects WithSecure Policy Manager 15 and Policy Manager Proxy 15. Certain WithSecure products allow Unauthenticated Remote Code Execution via the web server (backend). This affects WithSecure Policy Manager 15 and Policy Manager Proxy 15.

26 Sep 2023, 15:06

Type Values Removed Values Added
First Time Withsecure
Withsecure policy Manager Proxy
Withsecure f-secure Policy Manager
References (MISC) https://www.withsecure.com/en/support/security-advisories - (MISC) https://www.withsecure.com/en/support/security-advisories - Vendor Advisory
References (MISC) https://www.withsecure.com/en/support/security-advisories/cve-2023-nnn511 - (MISC) https://www.withsecure.com/en/support/security-advisories/cve-2023-nnn511 - Broken Link
CWE NVD-CWE-noinfo
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 9.8
CPE cpe:2.3:a:withsecure:policy_manager_proxy:15.00:*:*:*:*:linux_kernel:*:*
cpe:2.3:a:withsecure:f-secure_policy_manager:15.00:*:*:*:*:windows:*:*
cpe:2.3:a:withsecure:policy_manager_proxy:15.00:*:*:*:*:windows:*:*
cpe:2.3:a:withsecure:f-secure_policy_manager:15.00:*:*:*:*:linux_kernel:*:*

22 Sep 2023, 05:15

Type Values Removed Values Added
New CVE

Information

Published : 2023-09-22 05:15

Updated : 2024-09-25 16:35


NVD link : CVE-2023-43762

Mitre link : CVE-2023-43762

CVE.ORG link : CVE-2023-43762


JSON object : View

Products Affected

withsecure

  • f-secure_policy_manager
  • policy_manager_proxy