Vulnerability Details CVE-2018-10769
The transferProxy and approveProxy functions of a smart contract implementation for SmartMesh (SMT), an Ethereum ERC20 token, allow attackers to accomplish an unauthorized transfer of digital assets because replay attacks can occur with the same-named functions (with the same signatures) in other tokens: First (FST), GG Token (GG), M2C Mesh Network (MTC), M2C Mesh Network (mesh), and UG Token (UGT).
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 56.4%
CVSS Severity
CVSS v3 Score 7.5
CVSS v2 Score 5.0
Products affected by CVE-2018-10769
-
cpe:2.3:a:first_project:first:-
-
cpe:2.3:a:gg_token_project:gg_token:-
-
cpe:2.3:a:mesh_project:mesh:-
-
cpe:2.3:a:mtc_project:mtc:-
-
cpe:2.3:a:smartmesh_project:smartmesh:-
-
cpe:2.3:a:ugtoken_project:ugtoken:-