First published: Tue Sep 12 2023(Updated: )
A vulnerability has been identified in QMS Automotive (All versions < V12.39). The QMS.Mobile module of the affected application uses weak outdated application signing mechanism. This could allow an attacker to tamper the application code.
Credit: productcert@siemens.com productcert@siemens.com
Affected Software | Affected Version | How to fix |
---|---|---|
Siemens Qms Automotive | <12.39 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-40727 is a vulnerability found in QMS Automotive versions prior to V12.39 that allows attackers to tamper with the application code due to weak outdated application signing mechanism.
CVE-2023-40727 has a severity rating of 7.8, which is considered high.
CVE-2023-40727 affects all versions of QMS Automotive prior to V12.39.
The vulnerability in CVE-2023-40727 can be exploited by attackers to tamper with the application code.
Yes, updating QMS Automotive to version V12.39 or later will fix the vulnerability.