9.8
CVE-2023-43762
- EPSS 1.13%
- Veröffentlicht 22.09.2023 05:15:09
- Zuletzt bearbeitet 21.11.2024 08:24:44
- Erkennungen
Certain WithSecure products allow Unauthenticated Remote Code Execution via the web server (backend). This affects WithSecure Policy Manager 15 and Policy Manager Proxy 15.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Withsecure ≫ F-secure Policy Manager Version 15.00 SwPlatform linux_kernel
Withsecure ≫ F-secure Policy Manager Version 15.00 SwPlatform windows
Withsecure ≫ Policy Manager Proxy Version 15.00 SwPlatform linux_kernel
Withsecure ≫ Policy Manager Proxy Version 15.00 SwPlatform windows
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.13% | 0.621 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 9.8 | 3.9 | 5.9 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
|
| CISA-ADP | 9.8 | 3.9 | 5.9 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
|
https://www.withsecure.com/en/support/security-advisories
https://www.withsecure.com/en/support/security-advisories/cve-2023-43762
https://www.withsecure.com/en/support/security-advisories/cve-2023-nnn511