9.8
CVE-2023-43762
- EPSS 2.28%
- Veröffentlicht 22.09.2023 05:15:09
- Zuletzt bearbeitet 21.11.2024 08:24:44
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Certain WithSecure products allow Unauthenticated Remote Code Execution via the web server (backend). This affects WithSecure Policy Manager 15 and Policy Manager Proxy 15.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Withsecure ≫ F-secure Policy Manager Version15.00 SwPlatformlinux_kernel
Withsecure ≫ F-secure Policy Manager Version15.00 SwPlatformwindows
Withsecure ≫ Policy Manager Proxy Version15.00 SwPlatformlinux_kernel
Withsecure ≫ Policy Manager Proxy Version15.00 SwPlatformwindows
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 2.28% | 0.841 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 9.8 | 3.9 | 5.9 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
|
| 134c704f-9b21-4f2e-91b3-4a467353bcc0 | 9.8 | 3.9 | 5.9 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
|