Vulnerabilities > CVE-2023-40726 - Information Exposure Through Server Error Message vulnerability in Siemens QMS Automotive 12.30

047910
CVSS 8.8 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
LOW
Confidentiality impact
HIGH
Integrity impact
HIGH
Availability impact
HIGH
network
low complexity
siemens
CWE-550

Summary

A vulnerability has been identified in QMS Automotive (All versions < V12.39). The affected application server responds with sensitive information about the server. This could allow an attacker to directly access the database.

Vulnerable Configurations

Part Description Count
Application
Siemens
2