CVE-2020-29577: Znc Docker Image

Critical severity, CVSS 9.8. EPSS: 2.3% chance of exploitation in the next 30 days.

The official znc docker images before 1.7.1-slim contain a blank password for a root user. Systems using the znc docker container deployed by affected versions of the Docker image may allow an remote attacker to achieve root access with a blank password.

Affected products

  • Znc Znc Docker Image: version 1.6 only; version 1.6-slim only; version 1.6.4 only; version 1.6.4-slim only; version 1.6.5 only; version 1.6.5-slim only; …

Published 2020-12-08. Last modified 2026-06-17.