CVE-2018-19833
7.5
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
Exploitability: 3.9 / Impact: 3.6
Source: NVD
Description
The owned function of a smart contract implementation for DDQ, an tradable Ethereum ERC20 token, allows attackers to change the owner of the contract, because the function does not check the caller's identity.
Affected (1)
Products: Ddq Project: Ddq
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
References (2)
Source: af854a3a-2127-422b-91ae-364da2661108
Timeline
No history available yet.