code-423n4 / 2022-09-artgobblers-findings

0 stars 0 forks source link

the validator would able to manipulate the Time Stamp ant #463

Closed code423n4 closed 2 years ago

code423n4 commented 2 years ago

Lines of code

https://github.com/code-423n4/2022-09-artgobblers/blob/d2087c5a8a6a4f1b9784520e7fe75afa3a9cbdbe/src/Pages.sol#L219

Vulnerability details

Impact

attacker able to make manipulation in the function of pageprice

Proof of Concept

validators can make some manipulation in the timestamp.

bob validator even if can make time stamp manipulation or 2 secend able to call function faster than others then mint so much and...

Tools Used

manually

Recommended Mitigation Steps

time stamp can be check by offchain via chainlink or...

Shungy commented 2 years ago

There is no point here in manipulating the timestamp. Anyways with the merge timestamp manipulation is a thing of the past.

GalloDaSballo commented 2 years ago

Disputed per lack of details