The UBSexToken() function of a smart contract implementation for Business Alliance Financial Circle (BAFC), an tradable Ethereum ERC20 token, allows attackers to change the owner of the contract, because the function is public (by default) and does not check the caller's identity.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2019-12-31T15:06:32

Updated: 2019-12-31T15:06:32

Reserved: 2018-12-03T00:00:00


Link: CVE-2018-19830

JSON object: View

cve-icon NVD Information

Status : Modified

Published: 2019-12-31T16:15:11.167

Modified: 2023-11-07T02:55:44.710


Link: CVE-2018-19830

JSON object: View

cve-icon Redhat Information

No data.

CWE