PT-2019-9930 · Ethereum · Ddq

Published

2019-12-31

·

Updated

2020-01-14

·

CVE-2018-19833

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions DDQ smart contract implementation (affected versions not specified)
Description The issue concerns a smart contract implementation for DDQ, an Ethereum ERC20 token. It allows attackers to change the owner of the contract because the owned function does not properly check the caller's identity.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Improper Authentication

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2018-19833

Affected Products

Ddq