Vulnerability Description
An access control issue in Mercedes me IOS APP v1.34.0 and below allows attackers to view the maintenance orders of other users and access sensitive user information via unspecified vectors.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Mercedes-Benz | Mercedes Me | <= 1.34.0 |
Related Weaknesses (CWE)
References
- https://gist.github.com/wwwziziyu/7dbf7fd43f9e304ce0819f8a9784d2c6Third Party Advisory
- https://gist.github.com/wwwziziyu/7dbf7fd43f9e304ce0819f8a9784d2c6Third Party Advisory
FAQ
What is CVE-2023-47393?
CVE-2023-47393 is a vulnerability with a CVSS score of 5.3 (MEDIUM). An access control issue in Mercedes me IOS APP v1.34.0 and below allows attackers to view the maintenance orders of other users and access sensitive user information via unspecified vectors.
How severe is CVE-2023-47393?
CVE-2023-47393 has been rated MEDIUM with a CVSS base score of 5.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2023-47393?
Check the references section above for vendor advisories and patch information. Affected products include: Mercedes-Benz Mercedes Me.