9.8
CVSSv3

CVE-2020-29575

Published: 08/12/2020 Updated: 22/12/2020
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 890
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

The official elixir Docker images prior to 1.8.0-alpine (Alpine specific) contain a blank password for a root user. Systems using the elixir Linux Docker container deployed by affected versions of the Docker image may allow a remote malicious user to achieve root access with a blank password.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

docker elixir alpine docker image