CVE-2020-35191 is a vulnerability in Drupal Docker Images
Published on December 17, 2020
The official drupal docker images before 8.5.10-fpm-alpine (Alpine specific) contain a blank password for a root user. System using the drupal docker container deployed by affected versions of the docker image may allow a remote attacker to achieve root access with a blank password.
Products Associated with CVE-2020-35191
Want to know whenever a new CVE is published for Drupal Docker Images? stack.watch will email you.
Exploit Probability
EPSS
20.36%
Percentile
95.42%
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.