An access control issue in Mercedes me IOS APP v1.34.0 and below allows attackers to view the carts of other users via sending a crafted add order request.
Affected Software
Name |
Vendor |
Start Version |
End Version |
Mercedes_me |
Mercedes-benz |
* |
1.34.0 (including) |
References