Record summary

CVE-2018-11687 has a selected CVSS score of 7.5 (high).

Description

An integer overflow in the distributeBTR function of a smart contract implementation for Bitcoin Red (BTCR), an Ethereum ERC20 token, allows the owner to accomplish an unauthorized increase of digital assets by providing a large address[] array, as exploited in the wild in May 2018, aka the "ownerUnderflow" issue.

Description source: CVE List

Exploitation context

Known exploitation

VulnCheck KEV
Listed · Aug 15, 2018 · VulnCheck
Reported exploitation
Observed · VulnCheck

Affected products and versions

1
ProductSourceVersion rangeStatus
VulnCheckVersion data not supplied

References

2