nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2018-11239 CVE-2018-11239
HIGH
hexagontoken hexagon Integer Overflow or Wraparound
Record summary
CVE-2018-11239 has a selected CVSS score of 7.5 (high).
Description
An integer overflow in the _transfer function of a smart contract implementation for Hexagon (HXG), an Ethereum ERC20 token, allows attackers to accomplish an unauthorized increase of digital assets by providing a _to argument in conjunction with a large _value argument, as exploited in the wild in May 2018, aka the "burnOverflow" issue.
Description source: CVE List
Exploitation context
Known exploitation
- VulnCheck KEV
- Listed · May 19, 2018 · VulnCheck
- Reported exploitation
- Observed · VulnCheck
Affected products and versions
1| Product | Source | Version range | Status |
|---|---|---|---|
| VulnCheck | Version data not supplied | ||
References
2peckshield.com
https://peckshield.com/2018/05/18/burnOverflow