VendorsClaymore Dual Miner Projectclaymore_dual_miner10.1
Vulnerabilities

Claymore Dual Miner Project Claymore Dual Miner 10.1

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2CVEs
CVE-2017-16930
The remote management interface on the Claymore Dual GPU miner 10.1 allows an unauthenticated remote attacker to execute arbitrary code due to a stack-based buffer overflow in the request handler. This can be exploited via a long API request that is mishandled during logging.
Published 2017-12-05 · Modified
10.01 PoCEPSS 0.343
CVE-2017-16929
The remote management interface on the Claymore Dual GPU miner 10.1 is vulnerable to an authenticated directory traversal vulnerability exploited by issuing a specially crafted request, allowing a remote attacker to read/write arbitrary files. This can be exploited via ../ sequences in the pathname to miner_file or miner_getfile.
Published 2017-12-05 · Modified
8.51 PoCEPSS 0.129