TROYANOSYVIRUS
Zuruck zu CVEs

CVE-2018-10057

N/A

Beschreibung

The remote management interface of cgminer 4.10.0 and bfgminer 5.5.0 allows an authenticated remote attacker to write the miner configuration file to arbitrary locations on the server due to missing basedir restrictions (absolute directory traversal).

CVE Details

CVSS v3.1 BewertungN/A
Veroffentlicht6/5/2018
Zuletzt geandert11/21/2024
Quellenvd
Honeypot-Sichtungen0

Betroffene Produkte

bfgminer:bfgminercgminer_project:cgminer

Schwachen (CWE)

CWE-22

IOC Korrelationen

Keine Korrelationen erfasst

This product uses data from the NVD API but is not endorsed or certified by the NVD.