CVE-2023-43763: Withsecure F-Secure Policy Manager

Medium severity, CVSS 6.1. EPSS: 0.4% chance of exploitation in the next 30 days.

Certain WithSecure products allow XSS via an unvalidated parameter in the endpoint. This affects WithSecure Policy Manager 15 on Windows and Linux.

Affected products

  • Withsecure F-Secure Policy Manager: version 15.00 only

Published 2023-09-22. Last modified 2026-06-17.