9.8
CVSSv3

CVE-2020-29577

Published: 08/12/2020 Updated: 22/12/2020
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 890
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

The official znc docker images prior to 1.7.1-slim contain a blank password for a root user. Systems using the znc docker container deployed by affected versions of the Docker image may allow an remote malicious user to achieve root access with a blank password.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

znc znc docker image 1.6

znc znc docker image 1.6-slim

znc znc docker image 1.6.4

znc znc docker image 1.6.4-slim

znc znc docker image 1.6.5

znc znc docker image 1.6.5-slim

znc znc docker image 1.6.6

znc znc docker image 1.6.6-slim

znc znc docker image 1.7.0

znc znc docker image 1.7.0-slim

znc znc docker image 1.7.1-slim