CVE-2023-47392

An access control issue in Mercedes me IOS APP v1.34.0 and below allows attackers to view the carts of other users via sending a crafted add order request.
Configurations

Configuration 1 (hide)

cpe:2.3:a:mercedes-benz:mercedes_me:*:*:*:*:*:iphone_os:*:*

History

No history.

Information

Published : 2023-11-22 07:15

Updated : 2024-11-21 08:30


NVD link : CVE-2023-47392

Mitre link : CVE-2023-47392

CVE.ORG link : CVE-2023-47392


JSON object : View

Products Affected

mercedes-benz

  • mercedes_me
CWE
NVD-CWE-noinfo CWE-200

Exposure of Sensitive Information to an Unauthorized Actor