bitcoind and Bitcoin-Qt prior to 0.17.1 allow injection of arbitrary data into the debug log via an RPC call.
References
Link | Resource |
---|---|
https://en.bitcoin.it/wiki/Common_Vulnerabilities_and_Exposures#CVE-2018-20586 | Exploit Vendor Advisory |
Configurations
Configuration 1 (hide)
|
Information
Published : 2020-03-12 14:15
Updated : 2020-03-20 12:09
NVD link : CVE-2018-20586
Mitre link : CVE-2018-20586
JSON object : View
CWE
CWE-116
Improper Encoding or Escaping of Output
Products Affected
bitcoin
- bitcoin_core