CyberSec.Space Logo
Back to CVE Browser

CVE-2020-35189

CRITICAL
9.8
CVSS Severity Score
EPSS Score0.1550%
EPSS Percentile39.65th
PublishedDec 17, 2020
Last ModifiedNov 21, 2024

Vulnerability Description

The official kong docker images before 1.0.2-alpine (Alpine specific) contain a blank password for a root user. System using the kong docker container deployed by affected versions of the docker image may allow a remote attacker to achieve root access with a blank password.

Affected Platforms (CPE)

📦
Kong

Kong Alpine Docker Image

< 1.0.2

References & Advisories

Related Vulnerabilities