The official Express Gateway Docker images before 1.14.0 contain a blank password for a root user. Systems using the Express Gateway Docker container deployed by affected versions of the Docker image may allow an remote attacker to achieve root access.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2020-21941 | The official Express Gateway Docker images before 1.14.0 contain a blank password for a root user. Systems using the Express Gateway Docker container deployed by affected versions of the Docker image may allow an remote attacker to achieve root access. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://github.com/koharin/koharin2/blob/main/CVE-2020-29579 |
|
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-04T16:55:10.629Z
Reserved: 2020-12-05T00:00:00.000Z
Link: CVE-2020-29579
No data.
Status : Modified
Published: 2020-12-08T16:15:12.137
Modified: 2024-11-21T05:24:15.017
Link: CVE-2020-29579
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD