CVE-2020-35186: Critical severity adminer vulnerability
The official adminer docker images before 4.7.0-fastcgi contain a blank password for a root user. System using the adminer docker container deployed by affected versions of the docker image may allow a remote attacker to achieve root access with a blank password.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2020-35186?
CVE-2020-35186 is a vulnerability found in the official adminer docker images before version 4.7.0-fastcgi.
What is the severity of CVE-2020-35186?
CVE-2020-35186 has a severity rating of critical, with a score of 9.8.
How does CVE-2020-35186 affect systems?
CVE-2020-35186 affects systems that are using the adminer docker container deployed by affected versions of the docker image.
What is the risk of CVE-2020-35186?
CVE-2020-35186 poses a risk of allowing a remote attacker to achieve root access with a blank password.
How can I fix CVE-2020-35186?
To fix CVE-2020-35186, update the adminer docker image to version 4.7.0-fastcgi or later.