CVE-2023-40728: Siemens Qms Automotive
High severity, CVSS 7.8. EPSS: 0.2% chance of exploitation in the next 30 days.
A vulnerability has been identified in QMS Automotive (All versions < V12.39). The QMS.Mobile module of the affected application stores sensitive application data in an external insecure storage. This could allow an attacker to alter content, leading to arbitrary code execution or denial-of-service condition.
Affected products
- Siemens Qms Automotive: before 12.39 (fixed in 12.39)
Published 2023-09-12. Last modified 2026-06-17.