Hawk High

First Flight #39
Beginner FriendlySolidity
100 EXP
View results
Submission Details
Impact: high
Likelihood: low
Invalid

[M-2] There aren't any checks when setting *cutOffScore* in `LevelOne::startSession`, which can cut off all students.

Summary

If cutOffScore parameter is incorect it can make the protocol works unexpected.

Vulnerability Details

  1. cutOffScore > 100 -> the default score of users is set to 100, if the cutOffScore is bigger this means that all the students already need to be cut.

  2. cutOffScore < 60 -> this means that even when the negative reviews are given to the users all of them will pass.

Impact

Not bounded cutOffScore can lead to inappropriate behaviour

Tools Used

Manual Review

Recommendations

Add checks at least for the top bounder.

Updates

Lead Judging Commences

yeahchibyke Lead Judge 6 months ago
Submission Judgement Published
Invalidated
Reason: Design choice

Support

FAQs

Can't find an answer? Chat with us on Discord, Twitter or Linkedin.