An Integer overflow vulnerability exists in the batchTransfer function of a smart contract implementation for CryptoBotsBattle (CBTB), an Ethereum token. This vulnerability could be used by an attacker to create an arbitrary amount of tokens for any user.
References
Link | Resource |
---|---|
https://github.com/GreenFoxy/Smart-contract-Vulnerabilities/blob/master/BattleToken.md | Exploit Third Party Advisory |
https://etherscan.io/address/0x4daa9dc438a77bd59e8a43c6d46cbfe84cd04255#code | Third Party Advisory |
Configurations
Information
Published : 2019-03-15 13:29
Updated : 2019-03-18 09:09
NVD link : CVE-2018-17882
Mitre link : CVE-2018-17882
JSON object : View
CWE
CWE-190
Integer Overflow or Wraparound
Products Affected
cryptobots
- battletoken