CVE-2021-3006
7.5 HIGHThe breed function in the smart contract implementation for Farm in Seal Finance (Seal), an Ethereum token, lacks access control and thus...
Published: 2021-01-03 · Last updated: 2026-06-17
Severity and scoring
- CVSS
- 7.5 HIGH
- Vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
Affected products
| Vendor | Product |
|---|---|
| seal_finance_project | seal_finance |
Description
The breed function in the smart contract implementation for Farm in Seal Finance (Seal), an Ethereum token, lacks access control and thus allows price manipulation, as exploited in the wild in December 2020 and January 2021.
Source: NVD
References
- [NVD]https://nvd.nist.gov/vuln/detail/CVE-2021-3006
- [Exploit reference]https://blocksecteam.medium.com/security-incident-on-seal-finance-fa79c27a1c3b
- [Other]https://etherscan.io/address/0x33c2da7fd5b125e629b3950f3c38d7f721d7b30d
- [Exploit reference]https://blocksecteam.medium.com/security-incident-on-seal-finance-fa79c27a1c3b
- [Other]https://etherscan.io/address/0x33c2da7fd5b125e629b3950f3c38d7f721d7b30d