CVE-2020-35189
EUVD-2020-2287617.12.2020, 01:15
The official kong docker images before 1.0.2-alpine (Alpine specific) contain a blank password for a root user. System using the kong docker container deployed by affected versions of the docker image may allow a remote attacker to achieve root access with a blank password.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| kong | kong_alpine_docker_image | 𝑥 < 1.0.2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration