Lack of Owner
Due to missing or insufficient access controls, adversaies can withdraw some or all Ether from the contract account.
Metadata
- Severity: high
- Slug: lack-of-owner
CWEs
- 284: Improper Access Control
OWASP
- A01:2021: Broken Access Control
Due to missing or insufficient access controls, adversaies can withdraw some or all Ether from the contract account.
Open Solidity labs in SecDim Play for this vulnerability.
Want to skill-up in secure coding and AppSec? Try SecDim Wargames to learn how to find, hack and fix security vulnerabilities inspired by real-world incidents.
Join our secure coding and AppSec community. A discussion board to share and discuss all aspects of secure programming, AppSec, DevSecOps, fuzzing, cloudsec, AIsec code review, and more.
Read more