Описание
In the mintToken function of a smart contract implementation for Substratum (SUB), an Ethereum ERC20 token, the administrator can control mintedAmount, leverage an integer overflow, and modify a user account's balance arbitrarily.
Ссылки
- ExploitThird Party Advisory
- ExploitThird Party Advisory
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:substratum:substratum:-:*:*:*:*:*:*:*
EPSS
Процентиль: 47%
0.00237
Низкий
7.5 High
CVSS3
5 Medium
CVSS2
Дефекты
CWE-190
Связанные уязвимости
CVSS3: 7.5
github
больше 3 лет назад
In the mintToken function of a smart contract implementation for Substratum (SUB), an Ethereum ERC20 token, the administrator can control mintedAmount, leverage an integer overflow, and modify a user account's balance arbitrarily.
EPSS
Процентиль: 47%
0.00237
Низкий
7.5 High
CVSS3
5 Medium
CVSS2
Дефекты
CWE-190