CVE-2017-16929
The remote management interface on the Claymore Dual GPU miner 10.1 is vulnerable to an authenticated directory traversal vulnerability exploited by issuing a specially crafted request, allowing a remote attacker to read/write arbitrary files. This can be exploited via ../ sequences in the pathname to miner_file or miner_getfile.
Published:Dec 5, 2017
Last Modified:Apr 20, 2025
EPS:Dec 5, 2017
EPSS Score:0.32278
CVSS Score:8.1
Affected Products
Vendor
Product
Action
Vendor
Claymore Dual Miner Project
Product
Claymore Dual Miner
Claymore Dual Miner Project
Claymore Dual Miner
Exploits
Common Weakness Enumeration
Common Attack Pattern Enumeration and Classification (CAPEC)
Related CVEs
References
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
