CVE-2024-12604
6.5MEDIUMCleartext Storage of Sensitive Information in an Environment Variable, Weak Password Recovery Mechanism for Forgotten Password vulnerability in Tapandsign Technologies Tap&Sign App allows Password Rec
Published: 3/10/2025Updated: 9/12/2025
Description
Cleartext Storage of Sensitive Information in an Environment Variable, Weak Password Recovery Mechanism for Forgotten Password vulnerability in Tapandsign Technologies Tap&Sign App allows Password Recovery Exploitation, Functionality Misuse.This issue affects Tap&Sign App: before V.1.025.
AI AnalysisPowered by AI
Affected Products
tapandsigntap\&sign
References
- https://docs.tapandsign.com/tap-and-sign/tap-and-sign-v.1.025-surum-notlariRelease Notes
- https://www.usom.gov.tr/bildirim/tr-25-0063Third Party Advisory