The breed function in the smart contract implementation for Farm in Seal Finance (Seal), an Ethereum token, lacks access control and thus allows price manipulation, as exploited in the wild in December 2020 and January 2021.
References
Link | Resource |
---|---|
https://blocksecteam.medium.com/security-incident-on-seal-finance-fa79c27a1c3b | Exploit Third Party Advisory |
https://etherscan.io/address/0x33c2da7fd5b125e629b3950f3c38d7f721d7b30d | Third Party Advisory |
https://blocksecteam.medium.com/security-incident-on-seal-finance-fa79c27a1c3b | Exploit Third Party Advisory |
https://etherscan.io/address/0x33c2da7fd5b125e629b3950f3c38d7f721d7b30d | Third Party Advisory |
Configurations
History
21 Nov 2024, 06:20
Type | Values Removed | Values Added |
---|---|---|
References | () https://blocksecteam.medium.com/security-incident-on-seal-finance-fa79c27a1c3b - Exploit, Third Party Advisory | |
References | () https://etherscan.io/address/0x33c2da7fd5b125e629b3950f3c38d7f721d7b30d - Third Party Advisory |
12 Jul 2022, 17:42
Type | Values Removed | Values Added |
---|---|---|
CWE | NVD-CWE-Other |
Information
Published : 2021-01-03 06:15
Updated : 2024-11-21 06:20
NVD link : CVE-2021-3006
Mitre link : CVE-2021-3006
CVE.ORG link : CVE-2021-3006
JSON object : View
Products Affected
seal_finance_project
- seal_finance
CWE