CVE-2018-10666
03.05.2018, 04:29
The Owned smart contract implementation for Aurora IDEX Membership (IDXM), an Ethereum ERC20 token, allows attackers to acquire contract ownership because the setOwner function is declared as public. A new owner can subsequently modify variables.Enginsight
Vendor | Product | Version |
---|---|---|
auroradao | idex_membership | - |
𝑥
= Vulnerable software versions