Lucene search

K

Claymore Dual Miner Project Security Vulnerabilities

cve
cve

CVE-2017-16929

The remote management interface on the Claymore Dual GPU miner 10.1 is vulnerable to an authenticated directory traversal vulnerability exploited by issuing a specially crafted request, allowing a remote attacker to read/write arbitrary files. This can be exploited via ../ sequences in the pathname...

8.1CVSS

7.8AI Score

0.02EPSS

2017-12-05 09:29 AM
24
cve
cve

CVE-2017-16930

The remote management interface on the Claymore Dual GPU miner 10.1 allows an unauthenticated remote attacker to execute arbitrary code due to a stack-based buffer overflow in the request handler. This can be exploited via a long API request that is mishandled during logging.

9.8CVSS

9.7AI Score

0.1EPSS

2017-12-05 09:29 AM
26
cve
cve

CVE-2018-6317

The remote management interface in Claymore Dual Miner 10.5 and earlier is vulnerable to an unauthenticated format string vulnerability, allowing remote attackers to read memory or cause a denial of service.

9.1CVSS

8.9AI Score

0.176EPSS

2018-02-02 09:29 PM
19