ZeroHour

CVE-2018-10666

CVSS 3.0
7.5 high
EPSS
<1%p60
Published
()
Modified
Description

The Owned smart contract implementation for Aurora IDEX Membership (IDXM), an Ethereum ERC20 token, allows attackers to acquire contract ownership because the setOwner function is declared as public. A new owner can subsequently modify variables.

Vendors
auroradao
Products
idex membership
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N

In the news

No ingested article mentions this CVE yet.