Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-54148 | Cleartext Storage of Sensitive Information in an Environment Variable, Weak Password Recovery Mechanism for Forgotten Password vulnerability in Tapandsign Technologies Tap&Sign App allows Password Recovery Exploitation, Functionality Misuse.This issue affects Tap&Sign App: before V.1.025. |
Fri, 12 Sep 2025 07:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Improper Authentication in Tapandsign Technologies' Tap&Sign App | Improper Authentication in Tapandsign Technologies Tap and Sign App |
| Metrics |
cvssV3_1
|
cvssV3_1
|
Wed, 19 Mar 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Tapandsign
Tapandsign tap\&sign |
|
| Weaknesses | CWE-312 | |
| CPEs | cpe:2.3:a:tapandsign:tap\&sign:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Tapandsign
Tapandsign tap\&sign |
Mon, 10 Mar 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 10 Mar 2025 14:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Cleartext Storage of Sensitive Information in an Environment Variable, Weak Password Recovery Mechanism for Forgotten Password vulnerability in Tapandsign Technologies Tap&Sign App allows Password Recovery Exploitation, Functionality Misuse.This issue affects Tap&Sign App: before V.1.025. | |
| Title | Improper Authentication in Tapandsign Technologies' Tap&Sign App | |
| Weaknesses | CWE-526 CWE-640 |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: TR-CERT
Published:
Updated: 2025-09-12T07:11:59.692Z
Reserved: 2024-12-13T11:55:16.553Z
Link: CVE-2024-12604
Updated: 2025-03-10T16:06:10.787Z
Status : Modified
Published: 2025-03-10T15:15:36.947
Modified: 2025-09-12T08:15:44.320
Link: CVE-2024-12604
No data.
OpenCVE Enrichment
No data.
EUVD