CVE-2023-40727: Siemens Qms Automotive

High severity, CVSS 7.8. EPSS: 0.1% chance of exploitation in the next 30 days.

A vulnerability has been identified in QMS Automotive (All versions < V12.39). The QMS.Mobile module of the affected application uses weak outdated application signing mechanism. This could allow an attacker to tamper the application code.

Affected products

  • Siemens Qms Automotive: before 12.39 (fixed in 12.39)

Published 2023-09-12. Last modified 2026-06-17.