Vulnerabilities (CVE)

Filtered by vendor Ethereum Subscribe
Filtered by product Aleth
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2020-26800 1 Ethereum 1 Aleth 2023-12-10 4.3 MEDIUM 5.5 MEDIUM
A stack overflow vulnerability in Aleth Ethereum C++ client version <= 1.8.0 using a specially crafted a config.json file may result in a denial of service.
CVE-2017-12116 1 Ethereum 1 Aleth 2023-12-10 6.8 MEDIUM 8.1 HIGH
An exploitable improper authorization vulnerability exists in miner_setGasPrice API of cpp-ethereum's JSON-RPC (commit 4e1015743b95821849d001618a7ce82c7c073768). A JSON request can cause an access to the restricted functionality resulting in authorization bypass. An attacker can send JSON to trigger this vulnerability.