Skip to content

Sensitive Data: Adminer Default Login - Detect

Identifier: adminer_default_login

Scanner(s) Support

GraphQL Scanner REST Scanner WebApp Scanner ASM Scanner

Description

Adminer database management interface may be accessible with default credentials, allowing unauthorized access to database accounts and potentially exposing sensitive information, modifying data, or executing unauthorized operations.

How we test: We attempt to authenticate to the Adminer login interface using common default username and password combinations. If authentication succeeds, we report the vulnerability.

Reference:

Configuration

Example

Example configuration:

---
security_tests:
  adminer_default_login:
    skip: false

Reference

skip

Type : boolean

Skip the test if true.