An Integer overflow vulnerability exists in the batchTransfer function of a smart contract implementation for CryptoBotsBattle (CBTB), an Ethereum token. This vulnerability could be used by an attacker to create an arbitrary amount of tokens for any user.
References
Link | Resource |
---|---|
https://etherscan.io/address/0x4daa9dc438a77bd59e8a43c6d46cbfe84cd04255#code | Third Party Advisory |
https://github.com/GreenFoxy/Smart-contract-Vulnerabilities/blob/master/BattleToken.md | Exploit Third Party Advisory |
https://etherscan.io/address/0x4daa9dc438a77bd59e8a43c6d46cbfe84cd04255#code | Third Party Advisory |
https://github.com/GreenFoxy/Smart-contract-Vulnerabilities/blob/master/BattleToken.md | Exploit Third Party Advisory |
Configurations
History
21 Nov 2024, 03:55
Type | Values Removed | Values Added |
---|---|---|
References | () https://etherscan.io/address/0x4daa9dc438a77bd59e8a43c6d46cbfe84cd04255#code - Third Party Advisory | |
References | () https://github.com/GreenFoxy/Smart-contract-Vulnerabilities/blob/master/BattleToken.md - Exploit, Third Party Advisory |
Information
Published : 2019-03-15 20:29
Updated : 2024-11-21 03:55
NVD link : CVE-2018-17882
Mitre link : CVE-2018-17882
CVE.ORG link : CVE-2018-17882
JSON object : View
Products Affected
cryptobots
- battletoken
CWE
CWE-190
Integer Overflow or Wraparound