Vulnerabilities > CVE-2020-5232 - Unspecified vulnerability in Ens.Domains Ethereum Name Service

047910
CVSS 4.9 - MEDIUM
Attack vector
NETWORK
Attack complexity
MEDIUM
Privileges required
SINGLE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
NONE
network
ens-domains

Summary

A user who owns an ENS domain can set a trapdoor, allowing them to transfer ownership to another user, and later regain ownership without the new owners consent or awareness. A new ENS deployment is being rolled out that fixes this vulnerability in the ENS registry.

Vulnerable Configurations

Part Description Count
Application
Ens.Domains
1