Plaintext Storage of a Password
CVE-2024-42496
Summary
Smart-tab Android app installed April 2023 or earlier contains an issue with plaintext storage of a password. If this vulnerability is exploited, an attacker with physical access to the device may retrieve the credential information and spoof the device to access the related external service.
- LOW
- PHYSICAL
- NONE
- UNCHANGED
- NONE
- NONE
- LOW
- NONE
CWE-256 - Plaintext Storage of a Password
Storing a password in plaintext may result in a system compromise.
References
Advisory Timeline
- Published