Vulnerability Details CVE-2023-40729
A vulnerability has been identified in QMS Automotive (All versions < V12.39). The affected application lacks security control to prevent unencrypted communication without HTTPS. An attacker who managed to gain machine-in-the-middle position could manipulate, or steal confidential information.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 40.4%
CVSS Severity
CVSS v3 Score 7.3
Products affected by CVE-2023-40729
-
cpe:2.3:a:siemens:qms_automotive:-
-
cpe:2.3:a:siemens:qms_automotive:12.30