peter bassill · operator
$ cve CVE-2018-6317 JSON

CVE-2018-6317 EXPLOIT

9.1
CRITICAL · CVSS 3.0 · EPSS 43.7% (pctl 99)

Patch early

A public exploit exists.

Description

The remote management interface in Claymore Dual Miner 10.5 and earlier is vulnerable to an unauthenticated format string vulnerability, allowing remote attackers to read memory or cause a denial of service.

Scoring

CVSS9.1 (CRITICAL, v3.0)
VectorCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H
EPSS43.68% — more likely to be exploited than 99% of all CVEs
WeaknessCWE-134
On CISA KEVno
Public exploityes
Published2018-02-02
Last modified2026-06-17

Affected (1)

VendorProduct
claymore dual miner projectclaymore dual miner

Public exploits

SourceTitleDate
exploit-dbClaymore Dual GPU Miner 10.5 - Format String2018-02-05

References

→ the Explorer  ·  watch your stack  ·  NVD