Description
In Argent RecoveryManager before 0xdc350d09f71c48c5D22fBE2741e4d6A03970E192, the executeRecovery function does not require any signatures in the zero-guardian case, which allows attackers to cause a denial of service (locking) or a takeover.
Published: 2020-06-25
Score: 7.5 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Analysis and contextual insights are available on OpenCVE Cloud.

Remediation

No vendor fix or workaround currently provided.

Additional remediation guidance may be available on OpenCVE Cloud.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2020-7299 In Argent RecoveryManager before 0xdc350d09f71c48c5D22fBE2741e4d6A03970E192, the executeRecovery function does not require any signatures in the zero-guardian case, which allows attackers to cause a denial of service (locking) or a takeover.
History

No history.

Subscriptions

Argent Recoverymanager
cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-04T13:15:19.884Z

Reserved: 2020-06-25T00:00:00.000Z

Link: CVE-2020-15302

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2020-06-25T20:15:11.270

Modified: 2024-11-21T05:05:16.717

Link: CVE-2020-15302

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses