10

CVE-2020-29577

The official znc docker images before 1.7.1-slim contain a blank password for a root user. Systems using the znc docker container deployed by affected versions of the Docker image may allow an remote attacker to achieve root access with a blank password.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
ZncZnc Docker Image Version1.6
ZncZnc Docker Image Version1.6-slim
ZncZnc Docker Image Version1.6.4
ZncZnc Docker Image Version1.6.4-slim
ZncZnc Docker Image Version1.6.5
ZncZnc Docker Image Version1.6.5-slim
ZncZnc Docker Image Version1.6.6
ZncZnc Docker Image Version1.6.6-slim
ZncZnc Docker Image Version1.7.0
ZncZnc Docker Image Version1.7.0-slim
ZncZnc Docker Image Version1.7.1-slim
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 2.07% 0.823
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 9.8 3.9 5.9
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvd@nist.gov 10 10 10
AV:N/AC:L/Au:N/C:C/I:C/A:C