id: orangehrm-installer info: name: OrangeHrm Installer author: pussycat0x severity: high description: OrangeHrm is susceptible to the Installation page exposure due to misconfiguration. metadata: verified: true max-request: 1 shodan-query: http.title:"OrangeHRM Web Installation Wizard" tags: misconfig,exposure,install,orangehrm http: - method: GET path: - "{{BaseURL}}/installer/installerUI.php" matchers-condition: and matchers: - type: word part: body words: - "OrangeHRM Web Installation Wizard" - "admin user creation" condition: and - type: word part: header words: - "text/html" - type: status status: - 200 # digest: 4a0a00473045022100de5cdc54a739f1ecb3c6109c731d472175baaa0f6a7368617da7c527f7518d9902200f1c925005e091baa368e4a91875d1b0ff186b7ff861be917db186e20546010d:922c64590222798bb761d5b6d8e72950