CVE-2023-40724: Siemens Qms Automotive

High severity, CVSS 7.3. EPSS: 0.1% chance of exploitation in the next 30 days.

A vulnerability has been identified in QMS Automotive (All versions < V12.39). User credentials are found in memory as plaintext. An attacker could perform a memory dump, and get access to credentials, and use it for impersonation.

Affected products

  • Siemens Qms Automotive: before 12.39 (fixed in 12.39)

Published 2023-09-12. Last modified 2026-06-17.