Certain WithSecure products allow Unauthenticated Remote Code Execution via the web server (backend). This affects WithSecure Policy Manager 15 and Policy Manager Proxy 15.
2023-09-22T05:15:09.530
2024-11-21T08:24:44.153
Modified
CVSSv3.1: 9.8 (CRITICAL)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | withsecure | f-secure_policy_manager | 15.00 | Yes |
Application | withsecure | f-secure_policy_manager | 15.00 | Yes |
Application | withsecure | policy_manager_proxy | 15.00 | Yes |
Application | withsecure | policy_manager_proxy | 15.00 | Yes |