The sell function of a smart contract implementation for Target Coin (TGT), a tradable Ethereum ERC20 token, allows a potential trap that could be used to cause financial damage to the seller, because of overflow of the multiplication of its argument amount and a manipulable variable sellPrice, aka the "tradeTrap" issue.
References
Link Resource
https://peckshield.com/2018/06/11/tradeTrap/ Third Party Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2018-06-25T11:00:00

Updated: 2018-06-25T10:57:01

Reserved: 2018-06-08T00:00:00


Link: CVE-2018-12068

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2018-06-25T11:29:00.450

Modified: 2019-10-03T00:03:26.223


Link: CVE-2018-12068

JSON object: View

cve-icon Redhat Information

No data.

CWE