An integer underflow has been found... CVE-2020-24837

5.0 AV AC AU C I A
发布: 2021-02-10
修订: 2024-11-21

An integer underflow has been found in the latest version of ZCFees. The variables 'currPeriodIdx' and 'lastPeriodExecIdx' are both unsigned integers, and the result of the minus operation may be a negative integer which leads to an underflow. The attackers can modify the current timestamp of the transaction somehow and block the execution of the process function.

0%
暂无可用Exp或PoC
当前有1条受影响产品信息