The remote management interface on the Claymore Dual GPU miner 10.1 is vulnerable to an authenticated directory traversal vulnerability exploited by issuing a specially crafted request, allowing a remote attacker to read/write arbitrary files. This can be exploited via ../ sequences in the pathname to miner_file or miner_getfile.
Metrics
Affected Vendors & Products
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-05T20:43:57.814Z
Reserved: 2017-11-23T00:00:00
Link: CVE-2017-16929
No data.
Status : Deferred
Published: 2017-12-05T09:29:00.210
Modified: 2025-04-20T01:37:25.860
Link: CVE-2017-16929
No data.
OpenCVE Enrichment
No data.