CVE-2022-36601

The Eclipse TCF debug interface in JasMiner-X4-Server-20220621-090907 and below is open on port 1534. This issue allows unauthenticated attackers to gain root privileges on the affected device and access sensitive data or execute arbitrary commands.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:jinglemining:jasminer_x4_server_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:jinglemining:jasminer_x4_server:-:*:*:*:*:*:*:*

History

21 Nov 2024, 07:13

Type Values Removed Values Added
References () https://jamesachambers.com/cryptocurrency-asic-miners-security-and-hacking-audit/ - Exploit, Third Party Advisory () https://jamesachambers.com/cryptocurrency-asic-miners-security-and-hacking-audit/ - Exploit, Third Party Advisory

08 Sep 2022, 14:08

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 9.8
CWE NVD-CWE-Other
CPE cpe:2.3:o:jinglemining:jasminer_x4_server_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:jinglemining:jasminer_x4_server:-:*:*:*:*:*:*:*
References (MISC) https://jamesachambers.com/cryptocurrency-asic-miners-security-and-hacking-audit/ - (MISC) https://jamesachambers.com/cryptocurrency-asic-miners-security-and-hacking-audit/ - Exploit, Third Party Advisory

02 Sep 2022, 12:56

Type Values Removed Values Added
New CVE

Information

Published : 2022-09-01 21:15

Updated : 2024-11-21 07:13


NVD link : CVE-2022-36601

Mitre link : CVE-2022-36601

CVE.ORG link : CVE-2022-36601


JSON object : View

Products Affected

jinglemining

  • jasminer_x4_server_firmware
  • jasminer_x4_server