Skip to content

Latest commit

 

History

History
29 lines (15 loc) · 1.02 KB

054.md

File metadata and controls

29 lines (15 loc) · 1.02 KB

moneyversed

high

Lack of proper access control in market management functions

Summary

This can potentially allow unauthorized actors to manipulate market parameters and cause undesirable consequences for borrowers and lenders.

Vulnerability Detail

The TellerV2Context.sol contract does not have proper access control in place for market management functions. This could potentially allow unauthorized actors to manipulate market parameters, leading to undesirable consequences for borrowers and lenders.

Impact

Unauthorized manipulation of market parameters, potentially causing harm to borrowers and lenders.

Code Snippet

https://github.com/sherlock-audit/2023-03-teller/blob/main/teller-protocol-v2/packages/contracts/contracts/TellerV2Context.sol#L1

Tool used

Manual Review

Recommendation

Implement proper access control mechanisms for market management functions, such as restricting them to only authorized roles or the contract owner. This will help prevent unauthorized manipulation of market parameters.