An issue was discovered in a smart contract implementation for MORPH Token through 2019-06-05, an Ethereum token. A typo in the constructor of the Owned contract (which is inherited by MORPH Token) allows attackers to acquire contract ownership. A new owner can subsequently obtain MORPH Tokens for free and can perform a DoS attack.
References
Link | Resource |
---|---|
https://etherscan.io/address/0x2ef27bf41236bd859a95209e17a43fbd26851f92#contracts | Third Party Advisory |
https://github.com/smsecgroup/SM-VUL/tree/master/typo-vul-02 | Exploit Third Party Advisory |
https://etherscan.io/address/0x2ef27bf41236bd859a95209e17a43fbd26851f92#contracts | Third Party Advisory |
https://github.com/smsecgroup/SM-VUL/tree/master/typo-vul-02 | Exploit Third Party Advisory |
Configurations
History
21 Nov 2024, 04:28
Type | Values Removed | Values Added |
---|---|---|
References | () https://etherscan.io/address/0x2ef27bf41236bd859a95209e17a43fbd26851f92#contracts - Third Party Advisory | |
References | () https://github.com/smsecgroup/SM-VUL/tree/master/typo-vul-02 - Exploit, Third Party Advisory |
Information
Published : 2020-12-30 20:15
Updated : 2024-11-21 04:28
NVD link : CVE-2019-15080
Mitre link : CVE-2019-15080
CVE.ORG link : CVE-2019-15080
JSON object : View
Products Affected
morph_project
- morph
CWE