id: openmage-install info: name: OpenMage Installation Wizard author: DhiyaneshDk severity: high description: OpenMage is susceptible to the Installation page exposure due to misconfiguration. classification: cpe: cpe:2.3:a:openmage:openmage:*:*:*:*:*:*:*:* metadata: verified: true max-request: 1 vendor: openmage product: openmage shodan-query: title:"OpenMage Installation Wizard" tags: misconfig,openmage,install,exposure http: - method: GET path: - "{{BaseURL}}/index.php/install/" matchers-condition: and matchers: - type: word part: body words: - "OpenMage Installation Wizard" - type: status status: - 200 # digest: 490a004630440220359cb1ff7c06313bd2043626b73020cb86f455511d199de99317b4c64ade3d3402204846861015ef3cb7d82f30fb71a889a5b61c37b9e77bb4c6130ba7049491fddc:922c64590222798bb761d5b6d8e72950