CVE-2023-47393: Infoleak
Published Nov 22, 2023
·Updated
An access control issue in Mercedes me IOS APP v1.34.0 and below allows attackers to view the maintenance orders of other users and access sensitive user information via unspecified vectors.
Affected Software
1 affected component
Mercedes-Benz Mercedes Me Iphone Os<=1.34.0
Event History
Nov 22, 2023
CVE Published
12:00 AM
Data Sourced
12:00 AM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2023-47393.
2
What is the severity of CVE-2023-47393?
The severity of CVE-2023-47393 is medium with a CVSS score of 5.3.
3
What is the affected software for CVE-2023-47393?
The affected software for CVE-2023-47393 is Mercedes me IOS APP version 1.34.0 and below.
4
What is the impact of CVE-2023-47393?
CVE-2023-47393 allows attackers to view the maintenance orders of other users and access sensitive user information via unspecified vectors.
5
Are there any fixes available for CVE-2023-47393?
At the moment, there is no specific fix available for CVE-2023-47393. It is recommended to update to the latest version of the Mercedes me IOS APP when it becomes available.