Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2017-16929

Опубликовано: 05 дек. 2017
Источник: nvd
CVSS3: 8.1
CVSS2: 8.5
EPSS Средний

Описание

The remote management interface on the Claymore Dual GPU miner 10.1 is vulnerable to an authenticated directory traversal vulnerability exploited by issuing a specially crafted request, allowing a remote attacker to read/write arbitrary files. This can be exploited via ../ sequences in the pathname to miner_file or miner_getfile.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:claymore_dual_miner_project:claymore_dual_miner:10.1:*:*:*:*:*:*:*

EPSS

Процентиль: 96%
0.27143
Средний

8.1 High

CVSS3

8.5 High

CVSS2

Дефекты

CWE-22

Связанные уязвимости

CVSS3: 8.1
github
больше 3 лет назад

The remote management interface on the Claymore Dual GPU miner 10.1 is vulnerable to an authenticated directory traversal vulnerability exploited by issuing a specially crafted request, allowing a remote attacker to read/write arbitrary files. This can be exploited via ../ sequences in the pathname to miner_file or miner_getfile.

EPSS

Процентиль: 96%
0.27143
Средний

8.1 High

CVSS3

8.5 High

CVSS2

Дефекты

CWE-22