PT-2019-9930 · Ethereum · Ddq

Publicado

2019-12-31

·

Atualizado

2020-01-14

·

CVE-2018-19833

CVSS v2.0

5.0

Média

VetorAV:N/AC:L/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions DDQ smart contract implementation (affected versions not specified)
Description The issue concerns a smart contract implementation for DDQ, an Ethereum ERC20 token. It allows attackers to change the owner of the contract because the owned function does not properly check the caller's identity.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Improper Authentication

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2018-19833

Produtos afetados

Ddq