The official eggdrop Docker images prior to 1.8.4rc2 contain a blank password for a root user. Systems using the Eggdrop Docker container deployed by affected versions of the Docker image may allow an remote malicious user to achieve root access with a blank password.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
eggheads eggdrop docker image 1.6 |
||
eggheads eggdrop docker image 1.6.21 |
||
eggheads eggdrop docker image 1.8.0 |
||
eggheads eggdrop docker image 1.8.1 |
||
eggheads eggdrop docker image 1.8.2 |
||
eggheads eggdrop docker image 1.8.3 |
||
eggheads eggdrop docker image 1.8.4 |