📦 Qms Automotive

by Siemens

🔍 What is Qms Automotive?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2021-27389

CRITICAL CVSS 9.8 Apr 22, 2021

This vulnerability involves Siemens Opcenter Quality and QMS Automotive shipping with a private signing key that lacks adequate protection. Attackers could use this key to sign malicious code or data,...

CVE-2023-40726

HIGH CVSS 8.8 Sep 12, 2023

QMS Automotive application servers before version V12.39 expose sensitive server information in responses, potentially enabling direct database access. This affects all QMS Automotive installations ru...

CVE-2023-40728

HIGH CVSS 7.3 Sep 12, 2023

QMS Automotive versions before V12.39 store sensitive application data in insecure external storage via the QMS.Mobile module. This allows attackers with physical or logical access to modify data, pot...

CVE-2023-40730

HIGH CVSS 7.1 Sep 12, 2023

This vulnerability in QMS Automotive's QMS.Mobile module allows attackers to bypass authorization checks, potentially accessing sensitive data, performing administrative actions, or causing denial-of-...

CVE-2023-40724

HIGH CVSS 7.3 Sep 12, 2023

QMS Automotive software versions before V12.39 store user credentials as plaintext in memory, allowing attackers who can perform memory dumps to extract and misuse these credentials for impersonation ...