Mercedes-Benz car owners have said that the app they used to remotely locate, unlock and start their cars was displaying other people’s account and vehicle information.
TechCrunch spoke to two customers who said the Mercedes-Benz’ connected car app was pulling in information from other accounts and not their own, allowing them to see other car owners’ names, recent activity, phone numbers, and more.
The apparent security lapse happened late-Friday before the app went offline “due to site maintenance” a few hours later.
One Seattle-based car owner told TechCrunch that their app pulled in information from several other accounts.
The car owners we spoke to said they were able to see the car’s recent activity, including the locations of where it had recently been, but they were unable to track the real-time location using the app’s feature.
When he contacted Mercedes-Benz, a customer service representative told him to “delete the app” until it was fixed, he said.