An issue found in DepositGame v.1.0 allows an attacker to gain sensitive information via the GetBonusWithdraw and withdraw functions.
The product exposes a resource to the wrong control sphere, providing unintended actors with inappropriate access to the resource.
Link | Tags |
---|---|
https://github.com/Messi-Q/CVE-Application/blob/master/DepositGame-reentrancy/README.md | third party advisory exploit technical description |