Blank Password Vulnerability in RabbitMQ Docker Images by Pivotal Software
CVE-2020-35196
9.8CRITICAL
What is CVE-2020-35196?
The RabbitMQ Docker images prior to version 3.7.13-beta.1-management-alpine are susceptible to an authentication bypass due to the presence of a blank password for the root user. This flaw could be exploited by remote attackers to gain unauthorized root access, potentially compromising the entire system running the affected Docker container.