CVE-2018-10666

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
03/05/2018
Last modified:
07/11/2023

Description

The Owned smart contract implementation for Aurora IDEX Membership (IDXM), an Ethereum ERC20 token, allows attackers to acquire contract ownership because the setOwner function is declared as public. A new owner can subsequently modify variables.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:auroradao:idex_membership:-:*:*:*:*:*:*:*