An issue was discovered in a smart contract implementation for MORPH Token through 2019-06-05, an Ethereum token. A typo in the constructor of the Owned contract (which is inherited by MORPH Token) allows attackers to acquire contract ownership. A new owner can subsequently obtain MORPH Tokens for free and can perform a DoS attack.
References
Link | Resource |
---|---|
https://etherscan.io/address/0x2ef27bf41236bd859a95209e17a43fbd26851f92#contracts | Third Party Advisory |
https://github.com/smsecgroup/SM-VUL/tree/master/typo-vul-02 | Exploit Third Party Advisory |
https://etherscan.io/address/0x2ef27bf41236bd859a95209e17a43fbd26851f92#contracts | Third Party Advisory |
https://github.com/smsecgroup/SM-VUL/tree/master/typo-vul-02 | Exploit Third Party Advisory |
Configurations
History
No history.
Information
Published : 2020-12-30 20:15
Updated : 2024-11-21 04:28
NVD link : CVE-2019-15080
Mitre link : CVE-2019-15080
CVE.ORG link : CVE-2019-15080
JSON object : View
Products Affected
morph_project
- morph
CWE