Beginner FriendlyFoundry
100 EXP
View results
Submission Details
Severity: medium
Invalid

No password empty check

Summary

No check for empty password

Vulnerability Details

The contract allows an empty password to be set. This could be intentional but the owner might not want his password completely wiped out.

Impact

Medium Risk

Tools Used

vscode, forge

Recommendations

consider adding a check for newPassword!="" and revert if it is the empty string.

Updates

Lead Judging Commences

inallhonesty Lead Judge
almost 2 years ago
inallhonesty Lead Judge almost 2 years ago
Submission Judgement Published
Invalidated
Reason: Admin Input/call validation

Support

FAQs

Can't find an answer? Chat with us on Discord, Twitter or Linkedin.