CVE-2024-12604
10.03.2025, 15:15
Cleartext Storage of Sensitive Information in an Environment Variable, Weak Password Recovery Mechanism for Forgotten Password vulnerability in Tapandsign Technologies Tap&Sign App allows Password Recovery Exploitation, Functionality Misuse.This issue affects Tap&Sign App: before V.1.025.Enginsight
Vendor | Product | Version |
---|---|---|
tapandsign | tap\&sign | 𝑥 < 1.025 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
- CWE-526 - Exposure of Sensitive Information Through Environmental VariablesEnvironmental variables may contain sensitive information about a remote server.
- CWE-312 - Cleartext Storage of Sensitive InformationThe product stores sensitive information in cleartext within a resource that might be accessible to another control sphere.