Vulnerability Database

289,697

Total vulnerabilities in the database

CVE-2023-40732

A vulnerability has been identified in QMS Automotive (All versions < V12.39). The QMS.Mobile module of the affected application does not invalidate the session token on logout. This could allow an attacker to perform session hijacking attacks.

  • Published: Sep 12, 2023
  • Updated: Sep 13, 2023
  • CVE: CVE-2023-40732
  • Severity: Low
  • Exploit:

CVSS v3:

  • Severity: Low
  • Score: 3.9
  • AV:L/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:N