CVE-2018-11687
Published · Updated
25Vexday Risk Score
Prioritize patching. It exploitation observed by VulnCheck.
ssvc Attendepss 1.4%
from disclosure to weapon
Published on NVDAug 15
VulnCheckAug 15
exploitation probability
1.4%top 28% of all CVEs
observed exploitation
yesVulnCheck
An integer overflow in the distributeBTR function of a smart contract implementation for Bitcoin Red (BTCR), an Ethereum ERC20 token, allows the owner to accomplish an unauthorized increase of digital assets by providing a large address[] array, as exploited in the wild in May 2018, aka the "ownerUnderflow" issue.
Affected products
n/a · n/aReferences
https://www.anquanke.com/post/id/147913