CVE-2018-6317 EXPLOIT
9.1
CRITICAL · CVSS 3.0 · EPSS 43.7% (pctl 99)
Patch early
A public exploit exists.
Description
The remote management interface in Claymore Dual Miner 10.5 and earlier is vulnerable to an unauthenticated format string vulnerability, allowing remote attackers to read memory or cause a denial of service.
Scoring
| CVSS | 9.1 (CRITICAL, v3.0) |
|---|---|
| Vector | CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H |
| EPSS | 43.68% — more likely to be exploited than 99% of all CVEs |
| Weakness | CWE-134 |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2018-02-02 |
| Last modified | 2026-06-17 |
Affected (1)
| Vendor | Product |
|---|---|
| claymore dual miner project | claymore dual miner |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | Claymore Dual GPU Miner 10.5 - Format String | 2018-02-05 |
References
→ the Explorer · watch your stack · NVD