CVE-2018-12080
Last modified
CVE-2018-12080 is a vulnerability of currently unknown severity. The mintToken function of a smart contract implementation for Internet Node Token (INT), a tradable Ethereum ERC20 token, has no period constraint, which allows the owner to increase the total supply of the digital assets arbitrarily so as to make profits, aka the "tradeTrap" issue.. EPSS estimates a 0.89% chance of exploitation in the next 30 days.
Description
The mintToken function of a smart contract implementation for Internet Node Token (INT), a tradable Ethereum ERC20 token, has no period constraint, which allows the owner to increase the total supply of the digital assets arbitrarily so as to make profits, aka the "tradeTrap" issue.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Intchain | Node Token | All versions |
References
- https://peckshield.com/2018/06/11/tradeTrap/Third Party Advisory
- https://peckshield.com/2018/06/11/tradeTrap/Third Party Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2018-12080?
How severe is CVE-2018-12080?
How do I fix CVE-2018-12080?
Are you affected by CVE-2018-12080?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
