CVE-2023-43762: Withsecure F-Secure Policy Manager
Critical severity, CVSS 9.8. EPSS: 1.4% chance of exploitation in the next 30 days.
Certain WithSecure products allow Unauthenticated Remote Code Execution via the web server (backend). This affects WithSecure Policy Manager 15 and Policy Manager Proxy 15.
Affected products
- Withsecure F-Secure Policy Manager: version 15.00 only
- Withsecure Policy Manager Proxy: version 15.00 only
Published 2023-09-22. Last modified 2026-06-17.