CVE-2018-14715
Last modified
CVE-2018-14715 is a vulnerability of currently unknown severity. The endCoinFlip function and throwSlammer function of the smart contract implementations for Cryptogs, an Ethereum game, generate random numbers with an old block's hash. Therefore, attackers can predict the random number and always win the game.. EPSS estimates a 1.25% chance of exploitation in the next 30 days.
Description
The endCoinFlip function and throwSlammer function of the smart contract implementations for Cryptogs, an Ethereum game, generate random numbers with an old block's hash. Therefore, attackers can predict the random number and always win the game.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Cryptogs | Cryptogs | All versions |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2018-14715?
How severe is CVE-2018-14715?
How do I fix CVE-2018-14715?
Are you affected by CVE-2018-14715?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
