The onlyOwner modifier of a smart contract implementation for Coinlancer (CL), an Ethereum ERC20 token, has a potential access control vulnerability. All contract users can access functions that use this onlyOwner modifier, because the comparison between msg.sender and owner is incorrect.
References
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2018-09-18T21:00:00

Updated: 2018-09-18T20:57:01

Reserved: 2018-09-16T00:00:00


Link: CVE-2018-17111

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2018-09-18T21:29:03.933

Modified: 2019-10-03T00:03:26.223


Link: CVE-2018-17111

JSON object: View

cve-icon Redhat Information

No data.