CVE-2023-40727: High severity siemens qms automotive vulnerability
A vulnerability has been identified in QMS Automotive (All versions < V12.39). The QMS.Mobile module of the affected application uses weak outdated application signing mechanism. This could allow an attacker to tamper the application code.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2023-40727?
CVE-2023-40727 is a vulnerability found in QMS Automotive versions prior to V12.39 that allows attackers to tamper with the application code due to weak outdated application signing mechanism.
How severe is CVE-2023-40727?
CVE-2023-40727 has a severity rating of 7.8, which is considered high.
What software versions are affected by CVE-2023-40727?
CVE-2023-40727 affects all versions of QMS Automotive prior to V12.39.
How can the vulnerability in CVE-2023-40727 be exploited?
The vulnerability in CVE-2023-40727 can be exploited by attackers to tamper with the application code.
Is there a fix available for CVE-2023-40727?
Yes, updating QMS Automotive to version V12.39 or later will fix the vulnerability.