CVE-2018-11687observed exploitation

CVE-2018-11687

Published · Updated

25Vexday Risk Score

Prioritize patching. It exploitation observed by VulnCheck.

ssvc Attendepss 1.4%
from disclosure to weapon
Published on NVDAug 15
VulnCheckAug 15
exploitation probability
1.4%top 28% of all CVEs
observed exploitation
yesVulnCheck
An integer overflow in the distributeBTR function of a smart contract implementation for Bitcoin Red (BTCR), an Ethereum ERC20 token, allows the owner to accomplish an unauthorized increase of digital assets by providing a large address[] array, as exploited in the wild in May 2018, aka the "ownerUnderflow" issue.
Affected products
n/a · n/a