Description
A vulnerability has been identified in QMS Automotive (All versions < V12.39). The QMS.Mobile module of the affected application does not invalidate the session token on logout. This could allow an attacker to perform session hijacking attacks.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-45286 | A vulnerability has been identified in QMS Automotive (All versions < V12.39). The QMS.Mobile module of the affected application does not invalidate the session token on logout. This could allow an attacker to perform session hijacking attacks. |
References
History
Tue, 04 Mar 2025 03:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: siemens
Published:
Updated: 2025-02-27T20:55:18.275Z
Reserved: 2023-08-21T10:57:08.486Z
Link: CVE-2023-40732
Updated: 2024-08-02T18:38:51.290Z
Status : Modified
Published: 2023-09-12T10:15:29.593
Modified: 2024-11-21T08:20:02.943
Link: CVE-2023-40732
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD