Security Advisory

CVE-2018-19830

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2019-12-31 15:06:32
Last updated 2024-08-05 11:44:20
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

The UBSexToken() function of a smart contract implementation for Business Alliance Financial Circle (BAFC), an tradable Ethereum ERC20 token, allows attackers to change the owner of the contract, because the function is public (by default) and does not check the caller's identity.