ZeroHour

CVE-2018-19833

CVSS 3.1
7.5 high
EPSS
<1%p59
Published
()
Modified
Description

The owned function of a smart contract implementation for DDQ, an tradable Ethereum ERC20 token, allows attackers to change the owner of the contract, because the function does not check the caller's identity.

Vendors
ddq project
Products
ddq
Weakness
CWE-287
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N

In the news

No ingested article mentions this CVE yet.