The official storm Docker images before 1.2.1 contain a blank password for a root user. Systems using the Storm Docker container deployed by affected versions of the Docker image may allow an remote attacker to achieve root access with a blank password.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2020-12-08T15:13:21

Updated: 2024-08-04T16:55:10.285Z

Reserved: 2020-12-05T00:00:00

Link: CVE-2020-29580

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2020-12-08T16:15:12.197

Modified: 2020-12-22T04:31:33.220

Link: CVE-2020-29580

cve-icon Redhat

No data.