CVE-2019-12998

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
31/01/2020
Last modified:
03/02/2020

Description

c-lightning before 0.7.1 allows attackers to trigger loss of funds because of Incorrect Access Control. NOTE: README.md states "It can be used for testing, but it should not be used for real funds."

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:elementsproject:c-lightning:*:*:*:*:*:*:*:* 0.7.1 (excluding)