Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2023-40728


A vulnerability has been identified in QMS Automotive (All versions < V12.39). The QMS.Mobile module of the affected application stores sensitive application data in an external insecure storage. This could allow an attacker to alter content, leading to arbitrary code execution or denial-of-service condition.


Published

2023-09-12T10:15:29.210

Last Modified

2024-11-21T08:20:02.440

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 7.3 (HIGH)

Weaknesses
  • Type: Primary
    CWE-922

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application siemens qms_automotive < 12.39 Yes

References