Family: CGI abuses --> Category: attack
Geronimo Console Default Credentials Vulnerability Scan
Vulnerability Scan Summary
Checks for default credentials in Geronimo console
Detailed Explanation for this Vulnerability Test
The administration console for the remote web server is protected with
The remote host appears to be running Geronimo, an open-source J2EE
server from the Apache Software Foundation.
The installation of Geronimo on the remote host uses the default
username and password to control access to its administrative console.
Knowing these, a possible hacker can gain control of the affected
Alter the credentials in 'var/security/users.properties' or when
High / CVSS Base Score : 7
Click HERE for more information and discussions on this network vulnerability scan.