The tradeTrap Vulnerability: Exploiting the Sell Function of SEC Token Smart Contract
CVE-2018-12070 · MEDIUM Severity
AV:N/AC:L/AU:N/C:N/I:P/A:N
The sell function of a smart contract implementation for SEC, a tradable Ethereum ERC20 token, allows a potential trap that could be used to cause financial damage to the seller, because of overflow of the multiplication of its argument amount and a manipulable variable sellPrice, aka the "tradeTrap" issue.
Learn more about our Web Application Penetration Testing UK.