Synopsis
The remote web server is hosting a web application that uses default login credentials.
Description
The installation of NolaPro on the remote web server uses the default username and password to control access to its administrative console.
Knowing these, an attacker can gain administrative control of the affected application.
Solution
Log in via the administrative interface and change the password for the 'admin' account.
Plugin Details
File Name: nolapro_default_creds.nasl
Supported Sensors: Nessus
Vulnerability Information
Required KB Items: www/PHP, www/nolapro
Excluded KB Items: global_settings/supplied_logins_only