Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Jakob Heusinger

Researcher fromCode White
#26462of 53,634
9.8Total CVSS
Vulnerabilities · 1
PT-2023-28971
9.8
2023-09-21
Withsecure · Withsecure Policy Manager Proxy · CVE-2023-43762
**Name of the Vulnerable Software and Affected Versions** WithSecure Policy Manager version 15 WithSecure Policy Manager Proxy version 15 **Description** The issue allows Unauthenticated Remote Code Execution via the web server (backend). This is a significant problem as it can be exploited without the need for authentication, potentially leading to severe consequences. **Recommendations** For WithSecure Policy Manager version 15, update to a version that includes a fix for this issue. For WithSecure Policy Manager Proxy version 15, update to a version that includes a fix for this issue. As a temporary workaround, consider restricting access to the web server (backend) to minimize the risk of exploitation.