Skip to content

Sensitive Data: OpenMediaVault - Default Login

Identifier: openmediavault_default_login

Scanner(s) Support

GraphQL Scanner REST Scanner WebApp Scanner ASM Scanner

Description

OpenMediaVault network-attached storage management interface may be accessible with default credentials, allowing unauthorized access to storage configuration and administrative functions.

How we test: We attempt to authenticate to the OpenMediaVault web interface using common default username and password combinations. If authentication succeeds, we report the vulnerability.

Reference:

Configuration

Example

Example configuration:

---
security_tests:
  openmediavault_default_login:
    skip: false

Reference

skip

Type : boolean

Skip the test if true.