Mercedes-Benz XENTRY Retail Data Storage 7.8.1 allows remote attackers to cause a denial of service (device restart) via an unauthenticated API request. The attacker must be on the same network as the device.
                
            References
                    Configurations
                    Configuration 1 (hide)
| AND | 
 
 | 
History
                    07 Apr 2025, 16:15
| Type | Values Removed | Values Added | 
|---|---|---|
| CWE | CWE-400 | 
21 Nov 2024, 07:46
| Type | Values Removed | Values Added | 
|---|---|---|
| References | () https://b2bconnect.mercedes-benz.com/gb/workshop-solutions/diagnosis/retail-data-storage - Vendor Advisory | |
| References | () https://medium.com/%40windsormoreira/xentry-retail-data-storage-v7-8-1-denial-of-service-cve-2023-23590-60b65f5fa358 - | 
07 Nov 2023, 04:07
| Type | Values Removed | Values Added | 
|---|---|---|
| References | 
 | 
 | 
Information
                Published : 2023-01-15 05:15
Updated : 2025-04-07 16:15
NVD link : CVE-2023-23590
Mitre link : CVE-2023-23590
CVE.ORG link : CVE-2023-23590
JSON object : View
Products Affected
                mercedes-benz
- xentry_retail_data_storage
- xentry_retail_data_storage_firmware
CWE
                