Back to search
CVE-2022-25335
Published: Feb 18, 2022
Modified: Aug 3, 2024
PUBLISHED
Description
RigoBlock Dragos through 2022-02-17 lacks the onlyOwner modifier for setMultipleAllowances. This enables token manipulation, as exploited in the wild in February 2022. NOTE: although 2022-02-17 is the vendor's vulnerability announcement date, the vulnerability will not be remediated until a major protocol upgrade occurs.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
https://twitter.com/RigoBlock/status/1494351180713050116
x_refsource_MISC
https://twitter.com/danielvf/status/1494317265835147272
x_refsource_MISC
https://raw.globalsecuritydatabase.org/GSD-2022-1000077
x_refsource_MISC
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now