Misconfiguration Scanners
Misconfigurations account for a large share of real-world breaches. These scanners check for default credentials, open admin interfaces, overly permissive CORS policies, and other avoidable security gaps.
Important Misconfiguration Scanners
Subdomain Takeover Vulnerability Scanner
Online Subdomain Takeover Vulnerability Scanner
Jupyter Lab Unauthenticated Access Scanner
This scanner detects the Unauthenticated Access in Jupyter Lab. Unauthenticated access allows unauthorized individuals to access resources without proper authentication, compromising the security of the system. This can lead to exposure of sensitive information and system manipulation by unauthorized users.
Misconfigured Docker on Default Port
Online Misconfigured Docker on Default Port
Grafana Unauthenticated Access Scanner
This scanner detects the use of Grafana Unauthenticated Access in digital assets. It enables the identification of exposed Grafana instances where anonymous access is configured, potentially exposing sensitive data. The scanner helps protect against unauthorized access to dashboards and other sensitive information.
ElasticSearch Default Login Scanner
This scanner detects the use of ElasticSearch in digital assets. Identify default login vulnerabilities within ElasticSearch installations to prevent unauthorized access and maintain security.
HTTP Server Cross-Origin Resource Sharing (CORS) Scanner
HTTP Server Cross-Origin Resource Sharing (CORS) Scanner
Weak Content Security Policy Security Misconfiguration Scanner
This scanner detects the use of Weak Content Security Policy Security Misconfiguration in digital assets. It identifies misconfigured CSP directives that may result in reduced protection against cross-site scripting (XSS) attacks. This detection is crucial for maintaining secure loading restrictions for web resources.
Docker Daemon Exposure Scanner
This scanner checks if the Docker Daemon REST API is accessible without authentication, allowing attackers to execute arbitrary commands on containers and the host.
Jupyterhub Default Login Scanner
This scanner detects the use of Jupyterhub default login credentials in digital assets. It helps identify configurations using default administrator credentials, enhancing security analysis.
Laravel Nova Unauthenticated Panel Access Scanner
This scanner detects the use of Laravel Nova Unauthenticated Access in digital assets.
Node-Red Default Credentials Scanner
This scanner checks default credentials on Node-Red
Mysql Empty Password Scanner
If your MySQL server permits connection without a password, it is better to find this before people with malicious intentions.
Live view AXIS Network Camera Scanner
A misconfigured authentication vulnerability is a type of vulnerability that is most commonly found to affect the devices like modems, routers, digital cameras, printers, servers or web-based configuration or administrative interfaces having no password to access all configuration settings.
DVWA Default Login Scanner
Online DVWA Default Login Scanner
MOBOTIX Guest Camera Scanner
A misconfigured authentication vulnerability is a type of vulnerability that is most commonly found to affect the devices like modems, routers, digital cameras, printers, servers or web-based configuration or administrative interfaces having no password to access all configuration settings.
HP LaserJet Printers Scanner
A misconfigured authentication vulnerability is a type of vulnerability that is most commonly found to affect the devices like modems, routers, digital cameras, printers, servers or web-based configuration or administrative interfaces having no password to access all configuration settings.
HG Config Exposure Scanner
This scanner detects the use of HG Config Exposure in digital assets.
Selea Targa IP OCR-ANPR Camera Scanner
A misconfigured authentication vulnerability is a type of vulnerability that is most commonly found to affect the devices like modems, routers, digital cameras, printers, servers or web-based configuration or administrative interfaces having no password to access all configuration settings.
Epson WF Series Printers Detection Scanner
A misconfigured authentication vulnerability is a type of vulnerability that is most commonly found to affect the devices like modems, routers, digital cameras, printers, servers or web-based configuration or administrative interfaces having no password to access all configuration settings.
Misconfigured Redis Scanner
Online Misconfigured Redis Scanner
CVE-2026-34908 Scanner
CVE-2026-34908 Scanner - Path Traversal vulnerability in UniFi OS
JSON Configuration Files Scanner
This scanner detects the use of JSON Configuration Files Exposure in digital assets.
Springboot Heapdump Actuator Scanner
Environment variables and HTTP requests can be found in the HPROF
CVE-2026-30965 Scanner
CVE-2026-30965 Scanner - Information Disclosure vulnerability in Parse Server
Node-RED Unauthenticated Access Detection Scanner
This scanner detects the use of Node-RED flow editor accessibility without authentication in digital assets. Unauthenticated access can lead to remote code execution, allowing execution of system commands. It's crucial for protecting systems from unauthorized access.
CVE-2026-22778 Scanner
CVE-2026-22778 Scanner - Information Disclosure vulnerability in vLLM
CVE-2026-41492 Scanner
CVE-2026-41492 Scanner - Information Disclosure vulnerability in Dgraph
CVE-2021-27856 Scanner
CVE-2021-27856 Scanner - Unauthorized Admin Access vulnerability in FatPipe WARP/IPVPN/MPVPN
Nagios XI Default Login Scanner
This scanner detects the use of Nagios XI default admin login credentials in digital assets.
Mirth Connect Default Login Scanner
This scanner detects the use of Mirth Connect default login credentials in digital assets. Ensuring robust credential management is vital for maintaining security in healthcare integration engines.
CVE-2024-51978 Scanner
CVE-2024-51978 Scanner - Authentication Bypass vulnerability in Brother Printers
Homebridge Default Login Scanner
This scanner detects the use of Homebridge in digital assets. It identifies systems where default admin credentials are still in place, presenting potential security risks.
Panabit Gateway Default Login Scanner
This scanner detects the use of Panabit Gateway in digital assets.
CVE-2026-56782 Scanner
CVE-2026-56782 Scanner - Unauthenticated Access vulnerability in Gorse
Lutron Default Login Scanner
This scanner detects the use of Lutron default login in digital assets.
Net Vision UPS Monitor Default Login Scanner
This scanner detects the use of Net Vision UPS Monitor in digital assets.
IBM MobileFirst Foundation Default Login Scanner
This scanner detects the use of IBM MobileFirst Foundation default credentials in digital assets.
Open WebUI Default Login Scanner
This scanner detects the use of Open WebUI in digital assets.
Ruckus Wireless Default Login Scanner
This scanner detects the use of Ruckus Wireless in digital assets.
Homebridge Web Installer Scanner
This scanner detects the use of Homebridge Web Installer in digital assets. It identifies the exposure of the setup wizard, which allows unauthorized account creation, posing risks to smart home and network security.
Apache Hadoop YARN ResourceManager Injection Scanner
This scanner detects the use of Apache Hadoop YARN ResourceManager Remote Code Execution in digital assets. Remote Code Execution allows an attacker to execute arbitrary code on a target system, leading to potential unauthorized access, data manipulation, or system compromise, making this detection crucial for system security.
Drupal 7 Elfinder Remote Code Execution Scanner
Detects 'Remote Code Execution' vulnerability in Drupal 7 Elfinder.
CVE-2024-45488 Scanner
CVE-2024-45488 Scanner - Authentication Bypass vulnerability in SafeGuard for Privileged Passwords
DigitalOcean Key Token Exposure Detection Scanner
This scanner detects the use of DigitalOcean Key Exposure in digital assets. It identifies vulnerabilities associated with the improper handling of sensitive credential keys within the infrastructure.
CVE-2025-34291 Scanner
CVE-2025-34291 Scanner - CORS Misconfiguration vulnerability in Langflow AI
Argo Workflows Unauth Dashboard Detection Scanner
This scanner detects the use of Argo Workflows Unauthenticated Dashboard in digital assets. Unauthenticated access allows for the viewing, creating, and modifying of workflows. It's crucial for ensuring the enforcement of appropriate access controls to prevent unauthorized exploitation.
GetSimple CMS Web Installer Exposure Scanner
This scanner detects the use of GetSimple CMS Web Installer in digital assets. The web installer allows for new installations of the CMS which may pose security risks if publicly accessible. Identifying the presence of the installer is crucial for maintaining the security of the installation environment.
Gogs (Go Git Service) Web Installer Scanner
This scanner detects the use of Gogs (Go Git Service) Web Installer in digital assets.
AWS Config Exposure Scanner
This scanner detects the use of AWS Credentials Exposure in digital assets.
CirCarLife Web Installer Scanner
This scanner detects the use of CirCarLife Installation Page Exposure in digital assets. It identifies the publicly accessible setup page of the CirCarLife admin panel which can potentially lead to unauthorized access. Early detection of this misconfiguration helps in securing the system.
Zenphoto Setup Page Exposure Scanner
This scanner detects the use of Zenphoto Configuration Disclosure in digital assets. Zenphoto setup page before version 1.5 is prone to sensitive information disclosure due to misconfiguration.
WordPress Exposed Installation Page Exposure Scanner
This scanner detects the use of WordPress Web Installer in digital assets. WordPress's installation feature can allow unauthorized access if exposed, posing security risks. Detecting these exposures is essential to securing the implementation environment.
mCloud Panel Installer Scanner
Targets the mCloud Panel installation endpoint to detect exposed setup interfaces, enabling attackers to reinstall or modify cloud management configurations.
osTicket Installation Page Exposure Scanner
This scanner detects the use of osTicket Installation Page Exposure in digital assets.
baserCMS Web Installer Scanner
This scanner detects the use of baserCMS Web Installer in digital assets. It identifies the presence of an incomplete installation which unauthorized users could exploit to set up the CMS with attacker-controlled settings.
nopCommerce Installation Page Exposure Scanner
This scanner detects the presence of nopCommerce Installer's Installation Page in digital assets. The installation page exposure may lead to critical security risks if left unprotected.
Oracle Cloud Metadata Service Misconfiguration Scanner
Online Oracle Cloud Metadata Service Misconfiguration Scanner
DigitalOcean Metadata Service Misconfiguration Scanner
The DigitalOcean host is configured as a proxy which allows access to the instance metadata service. This could allow significant access to the host/infrastructure.
CVE-2026-26341 Scanner
CVE-2026-26341 Scanner - Default Credentials vulnerability in Tattile Camera
Amazon AWS Metadata Service Misconfiguration Scanner
The AWS host is configured as a proxy which allows access to the metadata service. This could allow significant access to the host/infrastructure.
Run all Misconfiguration checks at once.
S4E covers 2,107+ scanners in this category with continuous monitoring and full remediation guidance.
Start Free Scan →