First published: Tue Dec 08 2020(Updated: )
The official spiped docker images before 1.5-alpine contain a blank password for a root user. Systems using the spiped docker container deployed by affected versions of the docker image may allow an remote attacker to achieve root access with a blank password.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Docker Spiped Alpine Docker Image | <1.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-29581 is a vulnerability in the official spiped docker images before 1.5-alpine that allows remote attackers to achieve root access with a blank password.
Systems using the spiped docker container deployed by affected versions of the docker image may allow a remote attacker to achieve root access with a blank password.
CVE-2020-29581 has a severity rating of critical with a CVSS score of 9.8.
To fix CVE-2020-29581, update to the latest version of the spiped docker image (1.5-alpine or newer) that addresses this vulnerability.
You can find more information about CVE-2020-29581 at the following link: [link](https://github.com/koharin/koharin2/blob/main/CVE-2020-29581)