The Standard

The Standard
DeFiHardhat
20,000 USDC
View results
Submission Details
Severity: high
Valid

The distributeAssets functions misses access control, allowing anyone to transfer manager’s funds into the contract.

Vulnerability Details

Anyone users can call distributeAssets, on behalf of manager, which is not expected.

Impact

The function allows anyone to distribute assets and transfer manager’s funds into the contract

Tools Used

Manual

Recommendations

Add relevant modifier to the function, like onlyOwner or onlyManager

Updates

Lead Judging Commences

hrishibhat Lead Judge over 1 year ago
Submission Judgement Published
Validated
Assigned finding tags:

distributeAssets-issue

Support

FAQs

Can't find an answer? Chat with us on Discord, Twitter or Linkedin.