Description
A vulnerability has been identified in QMS Automotive (All versions < V12.39). The affected application returns inconsistent error messages in response to invalid user credentials during login session. This allows an attacker to enumerate usernames, and identify valid usernames.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-45279 | A vulnerability has been identified in QMS Automotive (All versions < V12.39). The affected application returns inconsistent error messages in response to invalid user credentials during login session. This allows an attacker to enumerate usernames, and identify valid usernames. |
References
History
Tue, 04 Mar 2025 03:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: siemens
Published:
Updated: 2025-02-27T20:56:05.719Z
Reserved: 2023-08-21T10:57:08.485Z
Link: CVE-2023-40725
Updated: 2024-08-02T18:38:51.252Z
Status : Modified
Published: 2023-09-12T10:15:28.917
Modified: 2024-11-21T08:20:02.053
Link: CVE-2023-40725
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD