Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-6rg8-wqvx-ghg5

Опубликовано: 10 мар. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 7.3

Описание

Cleartext Storage of Sensitive Information in an Environment Variable, Weak Password Recovery Mechanism for Forgotten Password vulnerability in Tapandsign Technologies Tap&Sign App allows Password Recovery Exploitation, Functionality Misuse.This issue affects Tap&Sign App: before V.1.025.

Cleartext Storage of Sensitive Information in an Environment Variable, Weak Password Recovery Mechanism for Forgotten Password vulnerability in Tapandsign Technologies Tap&Sign App allows Password Recovery Exploitation, Functionality Misuse.This issue affects Tap&Sign App: before V.1.025.

EPSS

Процентиль: 16%
0.00051
Низкий

7.3 High

CVSS3

Дефекты

CWE-312
CWE-526

Связанные уязвимости

CVSS3: 6.5
nvd
11 месяцев назад

Cleartext Storage of Sensitive Information in an Environment Variable, Weak Password Recovery Mechanism for Forgotten Password vulnerability in Tapandsign Technologies Tap&Sign App allows Password Recovery Exploitation, Functionality Misuse.This issue affects Tap&Sign App: before V.1.025.

EPSS

Процентиль: 16%
0.00051
Низкий

7.3 High

CVSS3

Дефекты

CWE-312
CWE-526