Back

CVE-2018-6317

CRITICAL

The remote management interface in Claymore Dual Miner 10.5 and earlier is vulnerable to an unauthenticated format string vulnerability, allowing remote attackers to read memory or cause a denial of service.

Published: Feb 2, 2018 Modified: Jun 17, 2026
CWE-134

CVSS Metrics

CVSSv3
Attack Vector: NETWORK Attack Complexity: LOW Privileges Required: NONE User Interaction: NONE Scope: UNCHANGED Confidentiality Impact: HIGH Integrity Impact: NONE Availability Impact: HIGH

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H

Affected Products (1)

Vendor Product Version
claymore_dual_miner_project claymore_dual_miner *

GitHub Security Advisory GHSA-x6jm-rxp5-jx5q

The remote management interface in Claymore Dual Miner 10.5 and earlier is vulnerable to an...

Risk Scores

CVSS Score 9.1 / 10
EPSS Score 43.68%

Top 1% most likely to be exploited

Threat Score 49.5 / 100

Data Sources

NVD EPSS GitHub