From 6e0a31fda9366c32cf4cd300c45a11eff201e655 Mon Sep 17 00:00:00 2001 From: PikPikcU <60111811+pikpikcu@users.noreply.github.com> Date: Sat, 3 Jul 2021 19:08:07 +0700 Subject: [PATCH 1/3] Create minio-default-password.yaml --- .../minio/minio-default-password.yaml | 34 +++++++++++++++++++ 1 file changed, 34 insertions(+) create mode 100644 default-logins/minio/minio-default-password.yaml diff --git a/default-logins/minio/minio-default-password.yaml b/default-logins/minio/minio-default-password.yaml new file mode 100644 index 0000000000..943e78d573 --- /dev/null +++ b/default-logins/minio/minio-default-password.yaml @@ -0,0 +1,34 @@ +id: minio-default-password + +info: + name: Minio Default Password + author: pikpikcu + severity: medium + +requests: + - method: POST + path: + - "{{BaseURL}}/minio/webrpc" + headers: + Content-Type: application/json + body: | + {"id":1,"jsonrpc":"2.0","params":{"username":"minioadmin","password":"minioadmin"},"method":"Web.Login"} + + matchers-condition: and + matchers: + + - type: word + words: + - "Content-Type: application/json" + part: header + + - type: word + words: + - 'uiVersion' + - 'token' + part: body + condition: and + + - type: status + status: + - 200 From e1c2053210a8155b259bfe71e5d57523c783e817 Mon Sep 17 00:00:00 2001 From: PikPikcU <60111811+pikpikcu@users.noreply.github.com> Date: Sat, 3 Jul 2021 19:10:10 +0700 Subject: [PATCH 2/3] Update minio-default-password.yaml --- default-logins/minio/minio-default-password.yaml | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/default-logins/minio/minio-default-password.yaml b/default-logins/minio/minio-default-password.yaml index 943e78d573..181a313002 100644 --- a/default-logins/minio/minio-default-password.yaml +++ b/default-logins/minio/minio-default-password.yaml @@ -9,7 +9,7 @@ requests: - method: POST path: - "{{BaseURL}}/minio/webrpc" - headers: + headers: Content-Type: application/json body: | {"id":1,"jsonrpc":"2.0","params":{"username":"minioadmin","password":"minioadmin"},"method":"Web.Login"} From 4f8c13a9833443100c63a5365b6306f1bc4da181 Mon Sep 17 00:00:00 2001 From: Prince Chaddha Date: Mon, 5 Jul 2021 19:44:47 +0530 Subject: [PATCH 3/3] Update minio-default-password.yaml --- default-logins/minio/minio-default-password.yaml | 7 +++++++ 1 file changed, 7 insertions(+) diff --git a/default-logins/minio/minio-default-password.yaml b/default-logins/minio/minio-default-password.yaml index 181a313002..7d2b90fde6 100644 --- a/default-logins/minio/minio-default-password.yaml +++ b/default-logins/minio/minio-default-password.yaml @@ -14,6 +14,13 @@ requests: body: | {"id":1,"jsonrpc":"2.0","params":{"username":"minioadmin","password":"minioadmin"},"method":"Web.Login"} + - method: POST + path: + - "{{BaseURL}}/minio/webrpc" + headers: + Content-Type: application/json + body: | + {"id":1,"jsonrpc":"2.0","params":{"username":"minioadmin","password":"minioadmin"},"method":"web.Login"} matchers-condition: and matchers: