Description
In Argent RecoveryManager before 0xdc350d09f71c48c5D22fBE2741e4d6A03970E192, the executeRecovery function does not require any signatures in the zero-guardian case, which allows attackers to cause a denial of service (locking) or a takeover.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2020-7299 | In Argent RecoveryManager before 0xdc350d09f71c48c5D22fBE2741e4d6A03970E192, the executeRecovery function does not require any signatures in the zero-guardian case, which allows attackers to cause a denial of service (locking) or a takeover. |
References
| Link | Providers |
|---|---|
| https://blog.openzeppelin.com/argent-vulnerability-report/ |
|
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-04T13:15:19.884Z
Reserved: 2020-06-25T00:00:00.000Z
Link: CVE-2020-15302
No data.
Status : Modified
Published: 2020-06-25T20:15:11.270
Modified: 2024-11-21T05:05:16.717
Link: CVE-2020-15302
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD