S4E just found a high top 10 tcp port service scan
2,107 tools·Free, no account required

Misconfiguration Scanners

Misconfigurations account for a large share of real-world breaches. These scanners check for default credentials, open admin interfaces, overly permissive CORS policies, and other avoidable security gaps.

By the numbers
2.1k
Misconfiguration scanners
in this category
48.8k
Automated runs
scans executed here
369.8k
Assets scanned
verified across S4E
NewestZulip Panel Detection Scanner
Run Full Scan →← All categories
Web VulnerabilitiesNetwork VulnerabilitiesInformation ScansExposed PanelsProduct CVEs (Web)Product CVEs (Network)DNS ControlsSSL Controls
Featured in this category

Important Misconfiguration Scanners

Browse all 2,107 tools →
medium6.5

Subdomain Takeover Vulnerability Scanner

Online Subdomain Takeover Vulnerability Scanner

~20sSingle assetBulk scanAPI
Apr 30, 2022
critical10.0

Jupyter Lab Unauthenticated Access Scanner

This scanner detects the Unauthenticated Access in Jupyter Lab. Unauthenticated access allows unauthorized individuals to access resources without proper authentication, compromising the security of the system. This can lead to exposure of sensitive information and system manipulation by unauthorized users.

~10sSingle assetBulk scanAPI
Oct 8, 2024
critical10.0

Misconfigured Docker on Default Port

Online Misconfigured Docker on Default Port

~5sSingle assetBulk scanAPI
Jun 4, 2021
high7.5

Grafana Unauthenticated Access Scanner

This scanner detects the use of Grafana Unauthenticated Access in digital assets. It enables the identification of exposed Grafana instances where anonymous access is configured, potentially exposing sensitive data. The scanner helps protect against unauthorized access to dashboards and other sensitive information.

~10sSingle assetBulk scanAPI
Jan 7, 2026
high8.9

ElasticSearch Default Login Scanner

This scanner detects the use of ElasticSearch in digital assets. Identify default login vulnerabilities within ElasticSearch installations to prevent unauthorized access and maintain security.

~60sSingle assetBulk scanAPI
Oct 8, 2024
medium6.1

HTTP Server Cross-Origin Resource Sharing (CORS) Scanner

HTTP Server Cross-Origin Resource Sharing (CORS) Scanner

~15sSingle assetBulk scanAPI
Dec 18, 2021
low1.0

Weak Content Security Policy Security Misconfiguration Scanner

This scanner detects the use of Weak Content Security Policy Security Misconfiguration in digital assets. It identifies misconfigured CSP directives that may result in reduced protection against cross-site scripting (XSS) attacks. This detection is crucial for maintaining secure loading restrictions for web resources.

~10sSingle assetBulk scanAPI
Dec 1, 2025
critical9.0

Docker Daemon Exposure Scanner

This scanner checks if the Docker Daemon REST API is accessible without authentication, allowing attackers to execute arbitrary commands on containers and the host.

~10sSingle assetBulk scanAPI
Oct 8, 2024
high8.3

Jupyterhub Default Login Scanner

This scanner detects the use of Jupyterhub default login credentials in digital assets. It helps identify configurations using default administrator credentials, enhancing security analysis.

~60sSingle assetBulk scanAPI
Oct 8, 2024
high7.0

Laravel Nova Unauthenticated Panel Access Scanner

This scanner detects the use of Laravel Nova Unauthenticated Access in digital assets.

~10sSingle assetBulk scanAPI
May 27, 2026
critical10.0

Node-Red Default Credentials Scanner

This scanner checks default credentials on Node-Red

~10sSingle assetBulk scanAPI
Feb 9, 2024
critical10.0

Mysql Empty Password Scanner

If your MySQL server permits connection without a password, it is better to find this before people with malicious intentions.

~5sSingle assetBulk scanAPI
Dec 16, 2023
critical10.0

Live view AXIS Network Camera Scanner

A misconfigured authentication vulnerability is a type of vulnerability that is most commonly found to affect the devices like modems, routers, digital cameras, printers, servers or web-based configuration or administrative interfaces having no password to access all configuration settings.

~10sSingle assetBulk scanAPI
May 17, 2021
critical10.0

DVWA Default Login Scanner

Online DVWA Default Login Scanner

~10sSingle assetBulk scanAPI
May 12, 2021
critical10.0

MOBOTIX Guest Camera Scanner

A misconfigured authentication vulnerability is a type of vulnerability that is most commonly found to affect the devices like modems, routers, digital cameras, printers, servers or web-based configuration or administrative interfaces having no password to access all configuration settings.

~10sSingle assetBulk scanAPI
May 17, 2021
critical10.0

HP LaserJet Printers Scanner

A misconfigured authentication vulnerability is a type of vulnerability that is most commonly found to affect the devices like modems, routers, digital cameras, printers, servers or web-based configuration or administrative interfaces having no password to access all configuration settings.

~10sSingle assetBulk scanAPI
May 17, 2021
critical10.0

HG Config Exposure Scanner

This scanner detects the use of HG Config Exposure in digital assets.

~10sSingle assetBulk scanAPI
Oct 8, 2024
critical10.0

Selea Targa IP OCR-ANPR Camera Scanner

A misconfigured authentication vulnerability is a type of vulnerability that is most commonly found to affect the devices like modems, routers, digital cameras, printers, servers or web-based configuration or administrative interfaces having no password to access all configuration settings.

~10sSingle assetBulk scanAPI
May 17, 2021
critical10.0

Epson WF Series Printers Detection Scanner

A misconfigured authentication vulnerability is a type of vulnerability that is most commonly found to affect the devices like modems, routers, digital cameras, printers, servers or web-based configuration or administrative interfaces having no password to access all configuration settings.

~10sSingle assetBulk scanAPI
Jun 5, 2021
high8.0

Misconfigured Redis Scanner

Online Misconfigured Redis Scanner

~7sSingle assetBulk scanAPI
Apr 19, 2021
critical10.0

CVE-2026-34908 Scanner

CVE-2026-34908 Scanner - Path Traversal vulnerability in UniFi OS

~10sBulk scanAPI
Aug 10, 2026
critical10.0

JSON Configuration Files Scanner

This scanner detects the use of JSON Configuration Files Exposure in digital assets.

~10sSingle assetBulk scanAPI
Jun 26, 2025
critical10.0

Springboot Heapdump Actuator Scanner

Environment variables and HTTP requests can be found in the HPROF

~5sSingle assetBulk scanAPI
May 22, 2021
critical9.9

CVE-2026-30965 Scanner

CVE-2026-30965 Scanner - Information Disclosure vulnerability in Parse Server

~10sBulk scanAPI
Aug 13, 2026
critical9.8

Node-RED Unauthenticated Access Detection Scanner

This scanner detects the use of Node-RED flow editor accessibility without authentication in digital assets. Unauthenticated access can lead to remote code execution, allowing execution of system commands. It's crucial for protecting systems from unauthorized access.

~10sSingle assetBulk scanAPI
Apr 7, 2026
critical9.8

CVE-2026-22778 Scanner

CVE-2026-22778 Scanner - Information Disclosure vulnerability in vLLM

~10sSingle assetBulk scanAPI
Jun 28, 2026
critical9.8

CVE-2026-41492 Scanner

CVE-2026-41492 Scanner - Information Disclosure vulnerability in Dgraph

~10sSingle assetBulk scanAPI
Jun 11, 2026
critical9.8

CVE-2021-27856 Scanner

CVE-2021-27856 Scanner - Unauthorized Admin Access vulnerability in FatPipe WARP/IPVPN/MPVPN

~10sSingle assetBulk scanAPI
Oct 8, 2025
critical9.8

Nagios XI Default Login Scanner

This scanner detects the use of Nagios XI default admin login credentials in digital assets.

~60sSingle assetBulk scanAPI
Oct 8, 2024
critical9.8

Mirth Connect Default Login Scanner

This scanner detects the use of Mirth Connect default login credentials in digital assets. Ensuring robust credential management is vital for maintaining security in healthcare integration engines.

~10sSingle assetBulk scanAPI
Apr 4, 2026
critical9.8

CVE-2024-51978 Scanner

CVE-2024-51978 Scanner - Authentication Bypass vulnerability in Brother Printers

~10sSingle assetBulk scanAPI
Jun 28, 2025
critical9.8

Homebridge Default Login Scanner

This scanner detects the use of Homebridge in digital assets. It identifies systems where default admin credentials are still in place, presenting potential security risks.

~10sSingle assetBulk scanAPI
Mar 30, 2026
critical9.8

Panabit Gateway Default Login Scanner

This scanner detects the use of Panabit Gateway in digital assets.

~60sSingle assetBulk scanAPI
Oct 8, 2024
critical9.8

CVE-2026-56782 Scanner

CVE-2026-56782 Scanner - Unauthenticated Access vulnerability in Gorse

~10sBulk scanAPI
Jul 1, 2026
critical9.8

Lutron Default Login Scanner

This scanner detects the use of Lutron default login in digital assets.

~60sSingle assetBulk scanAPI
Oct 8, 2024
critical9.8

Net Vision UPS Monitor Default Login Scanner

This scanner detects the use of Net Vision UPS Monitor in digital assets.

~10sBulk scanAPI
Aug 11, 2026
critical9.8

IBM MobileFirst Foundation Default Login Scanner

This scanner detects the use of IBM MobileFirst Foundation default credentials in digital assets.

~60sSingle assetBulk scanAPI
May 8, 2026
critical9.8

Open WebUI Default Login Scanner

This scanner detects the use of Open WebUI in digital assets.

~10sSingle assetBulk scanAPI
Nov 18, 2025
critical9.8

Ruckus Wireless Default Login Scanner

This scanner detects the use of Ruckus Wireless in digital assets.

~60sSingle assetBulk scanAPI
Oct 8, 2024
critical9.8

Homebridge Web Installer Scanner

This scanner detects the use of Homebridge Web Installer in digital assets. It identifies the exposure of the setup wizard, which allows unauthorized account creation, posing risks to smart home and network security.

~10sSingle assetBulk scanAPI
Jan 22, 2026
critical9.8

Apache Hadoop YARN ResourceManager Injection Scanner

This scanner detects the use of Apache Hadoop YARN ResourceManager Remote Code Execution in digital assets. Remote Code Execution allows an attacker to execute arbitrary code on a target system, leading to potential unauthorized access, data manipulation, or system compromise, making this detection crucial for system security.

~10sSingle assetBulk scanAPI
Oct 8, 2024
critical9.8

Drupal 7 Elfinder Remote Code Execution Scanner

Detects 'Remote Code Execution' vulnerability in Drupal 7 Elfinder.

~10sSingle assetBulk scanAPI
Mar 24, 2025
critical9.8

CVE-2024-45488 Scanner

CVE-2024-45488 Scanner - Authentication Bypass vulnerability in SafeGuard for Privileged Passwords

~10sSingle assetBulk scanAPI
Oct 16, 2024
critical9.8

DigitalOcean Key Token Exposure Detection Scanner

This scanner detects the use of DigitalOcean Key Exposure in digital assets. It identifies vulnerabilities associated with the improper handling of sensitive credential keys within the infrastructure.

~10sSingle assetBulk scanAPI
Oct 8, 2024
critical9.4

CVE-2025-34291 Scanner

CVE-2025-34291 Scanner - CORS Misconfiguration vulnerability in Langflow AI

~10sBulk scanAPI
Jan 3, 2026
critical9.4

Argo Workflows Unauth Dashboard Detection Scanner

This scanner detects the use of Argo Workflows Unauthenticated Dashboard in digital assets. Unauthenticated access allows for the viewing, creating, and modifying of workflows. It's crucial for ensuring the enforcement of appropriate access controls to prevent unauthorized exploitation.

~10sSingle assetBulk scanAPI
Apr 7, 2026
critical9.4

GetSimple CMS Web Installer Exposure Scanner

This scanner detects the use of GetSimple CMS Web Installer in digital assets. The web installer allows for new installations of the CMS which may pose security risks if publicly accessible. Identifying the presence of the installer is crucial for maintaining the security of the installation environment.

~10sSingle assetBulk scanAPI
Oct 8, 2024
critical9.4

Gogs (Go Git Service) Web Installer Scanner

This scanner detects the use of Gogs (Go Git Service) Web Installer in digital assets.

~10sSingle assetBulk scanAPI
Oct 8, 2024
critical9.4

AWS Config Exposure Scanner

This scanner detects the use of AWS Credentials Exposure in digital assets.

~10sSingle assetBulk scanAPI
Oct 8, 2024
critical9.4

CirCarLife Web Installer Scanner

This scanner detects the use of CirCarLife Installation Page Exposure in digital assets. It identifies the publicly accessible setup page of the CirCarLife admin panel which can potentially lead to unauthorized access. Early detection of this misconfiguration helps in securing the system.

~10sSingle assetBulk scanAPI
Oct 8, 2024
critical9.4

Zenphoto Setup Page Exposure Scanner

This scanner detects the use of Zenphoto Configuration Disclosure in digital assets. Zenphoto setup page before version 1.5 is prone to sensitive information disclosure due to misconfiguration.

~10sSingle assetBulk scanAPI
Oct 8, 2024
critical9.4

WordPress Exposed Installation Page Exposure Scanner

This scanner detects the use of WordPress Web Installer in digital assets. WordPress's installation feature can allow unauthorized access if exposed, posing security risks. Detecting these exposures is essential to securing the implementation environment.

~10sSingle assetBulk scanAPI
Oct 8, 2024
critical9.4

mCloud Panel Installer Scanner

Targets the mCloud Panel installation endpoint to detect exposed setup interfaces, enabling attackers to reinstall or modify cloud management configurations.

~10sSingle assetBulk scanAPI
Oct 8, 2024
critical9.4

osTicket Installation Page Exposure Scanner

This scanner detects the use of osTicket Installation Page Exposure in digital assets.

~10sBulk scanAPI
Jul 2, 2026
critical9.4

baserCMS Web Installer Scanner

This scanner detects the use of baserCMS Web Installer in digital assets. It identifies the presence of an incomplete installation which unauthorized users could exploit to set up the CMS with attacker-controlled settings.

~10sSingle assetBulk scanAPI
Mar 23, 2025
critical9.4

nopCommerce Installation Page Exposure Scanner

This scanner detects the presence of nopCommerce Installer's Installation Page in digital assets. The installation page exposure may lead to critical security risks if left unprotected.

~10sSingle assetBulk scanAPI
Oct 8, 2024
critical9.3

Oracle Cloud Metadata Service Misconfiguration Scanner

Online Oracle Cloud Metadata Service Misconfiguration Scanner

~10sSingle assetBulk scanAPI
Apr 18, 2022
critical9.3

DigitalOcean Metadata Service Misconfiguration Scanner

The DigitalOcean host is configured as a proxy which allows access to the instance metadata service. This could allow significant access to the host/infrastructure.

~10sSingle assetBulk scanAPI
Apr 18, 2022
critical9.3

CVE-2026-26341 Scanner

CVE-2026-26341 Scanner - Default Credentials vulnerability in Tattile Camera

~10sSingle assetBulk scanAPI
May 11, 2026
critical9.3

Amazon AWS Metadata Service Misconfiguration Scanner

The AWS host is configured as a proxy which allows access to the metadata service. This could allow significant access to the host/infrastructure.

~10sSingle assetBulk scanAPI
Apr 18, 2022

Run all Misconfiguration checks at once.

S4E covers 2,107+ scanners in this category with continuous monitoring and full remediation guidance.

Start Free Scan →