CyberSec.Space Logo
Back to CVE Browser

CVE-2020-29578

CRITICAL
9.8
CVSS Severity Score
EPSS Score0.1550%
EPSS Percentile11.91th
PublishedDec 8, 2020
Last ModifiedNov 21, 2024

Vulnerability Description

The official piwik Docker images before fpm-alpine (Alpine specific) contain a blank password for a root user. Systems using the Piwik Docker container deployed by affected versions of the Docker image may allow an remote attacker to achieve root access.

Affected Platforms (CPE)

πŸ“¦
Matomo

Piwik Fpm Alpine Docker Image

= 3
πŸ“¦
Matomo

Piwik Fpm Alpine Docker Image

= 3.5
πŸ“¦
Matomo

Piwik Fpm Alpine Docker Image

= 3.5.1
πŸ“¦
Matomo

Piwik Fpm Alpine Docker Image

= 3.6
πŸ“¦
Matomo

Piwik Fpm Alpine Docker Image

= 3.6.0

References & Advisories

Related Vulnerabilities