1 results (0.005 seconds)

CVSS: 10.0EPSS: 2%CPEs: 1EXPL: 0

17 Dec 2020 — The official kong docker images before 1.0.2-alpine (Alpine specific) contain a blank password for a root user. System using the kong docker container deployed by affected versions of the docker image may allow a remote attacker to achieve root access with a blank password. Las imágenes de docker de official kong versiones anteriores a 1.0.2-alpine (específicas de Alpine), contienen una contraseña en blanco para un usuario root. El sistema que usa el contenedor de docker kong implementado por unas vers... • https://github.com/koharin/koharin2/blob/main/CVE-2020-35189 • CWE-306: Missing Authentication for Critical Function •