The Dussehra::enterPeopleWhoLikeRam
allows people to enter in the event in order to be eligible to become Ram, but it also allows to enter people if Ram is already selected making them lose their entry fees.
Along with that it doesn't revert even if the event is ended, and thus also losing their money they provided as entry fees.
The vulnerability is present in the Dussehra::enterPeopleWhoLikeRam
where it allows people to enter even if Ram is already selected or the event is added.
The function is meant to give entry to people in order to become eligible for becoming Ram, but if Ram is already selected still it gives entry to people by taking the fees.
It is totally insignificant to allow entry after choosing Ram as the people taking entry after Ram is chosen will not be eligible to become Ram as Ram is already chosen, thus causing them to lose their entry fees.
Allowing entry even after Ram is chosen will not make them eligible to become Ram.
Manual Review
Doesn't allow entry when either Ram is already chosen or the event is finished.
It is the user's responsibility to check the date of the event.
The contest is live. Earn rewards by submitting a finding.
This is your time to appeal against judgements on your submissions.
Appeals are being carefully reviewed by our judges.