Beginner FriendlyFoundry
100 EXP
View results
Submission Details
Severity: high
Invalid

Password can be set by anyone

Summary

Password can be set by anyone.

Vulnerability Details

setPassword function has no restrictions on call, so anyone can set a password...

Impact

Tools Used

Recommendations

Add a test like in getPassword function (if msg.sender != s_owner...)

Updates

Lead Judging Commences

inallhonesty Lead Judge
over 1 year ago
inallhonesty Lead Judge over 1 year ago
Submission Judgement Published
Invalidated
Reason: Other

Support

FAQs

Can't find an answer? Chat with us on Discord, Twitter or Linkedin.