CVE-2017-16929: Claymore Dual Miner Project Claymore Dual Miner
High severity, CVSS 8.1. EPSS: 12.9% chance of exploitation in the next 30 days.
The remote management interface on the Claymore Dual GPU miner 10.1 is vulnerable to an authenticated directory traversal vulnerability exploited by issuing a specially crafted request, allowing a remote attacker to read/write arbitrary files. This can be exploited via ../ sequences in the pathname to miner_file or miner_getfile.
Affected products
- Claymore Dual Miner Project Claymore Dual Miner: version 10.1 only
Published 2017-12-05. Last modified 2026-06-17.