PT-2021-18592 · Unknown · Seal Finance

Published

2021-01-03

·

Updated

2022-07-12

·

CVE-2021-3006

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions Seal Finance (Seal) (affected versions not specified)
Description The issue concerns a lack of access control in the breed function of the smart contract implementation for Farm in Seal Finance, allowing price manipulation. This has been exploited in real-world incidents in December 2020 and January 2021.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2021-3006

Affected Products

Seal Finance