Beginner FriendlyFoundryNFT
100 EXP
View results
Submission Details
Severity: low
Invalid

`Dussehra::enterPeopleWhoLikeRam` allows people to enter even if Ram is selected or Dussehra event is ended making them lose their entry fees

Summary

The Dussehra::enterPeopleWhoLikeRam allows people to enter in the event in order to be eligible to become Ram, but it also allows to enter people if Ram is already selected making them lose their entry fees.

Along with that it doesn't revert even if the event is ended, and thus also losing their money they provided as entry fees.

Vulnerability Details

The vulnerability is present in the Dussehra::enterPeopleWhoLikeRam where it allows people to enter even if Ram is already selected or the event is added.

The function is meant to give entry to people in order to become eligible for becoming Ram, but if Ram is already selected still it gives entry to people by taking the fees.

It is totally insignificant to allow entry after choosing Ram as the people taking entry after Ram is chosen will not be eligible to become Ram as Ram is already chosen, thus causing them to lose their entry fees.

Impact

Allowing entry even after Ram is chosen will not make them eligible to become Ram.

Tools Used

Manual Review

Recommendations

Doesn't allow entry when either Ram is already chosen or the event is finished.

Updates

Lead Judging Commences

bube Lead Judge about 1 year ago
Submission Judgement Published
Invalidated
Reason: Non-acceptable severity
Assigned finding tags:

Invalid - enter people after event or after Ram is selected

It is the user's responsibility to check the date of the event.

Support

FAQs

Can't find an answer? Chat with us on Discord, Twitter or Linkedin.