Unrated severityNVD Advisory· Published Sep 12, 2023· Updated Feb 27, 2025
CVE-2023-40725
CVE-2023-40725
Description
A vulnerability has been identified in QMS Automotive (All versions < V12.39). The affected application returns inconsistent error messages in response to invalid user credentials during login session. This allows an attacker to enumerate usernames, and identify valid usernames.
Affected products
2< V12.39+ 1 more
- (no CPE)range: < V12.39
- (no CPE)range: All versions < V12.39
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1News mentions
0No linked articles in our index yet.