Project

General

Profile

Actions

Feature #14682

closed

[FR] mysql access using "root" w/o password warning?

Added by old_mshigorin about 19 years ago. Updated over 17 years ago.

Status:
Closed
Priority:
Should have
Category:
-
Target version:
-
Start date:
2005-04-18
Due date:
% Done:

0%

Estimated time:
PHP Version:
Tags:
Complexity:
Sprint Focus:

Description

It would be great to add check/warning for the case which is quite popular as quick-and-dirty (and all of us know there's nothing more persistent than temporary): access to MySQL DB with "root" user and empty password.

Of course if someone implements this for 3.8.0, would be great to increase overall security of TYPO3 installations based on that but of course OK to just postpone the bugreport.

Inspired by the addition of the second check here:

---
Security warning:
- The password of your Install Tool is still using the default value "joh316"
- The backend user "admin" with password "password" is still existing

It is highly recommended that you change this immediately.
---

:-)
(issue imported from #M991)


Related issues 1 (0 open1 closed)

Related to TYPO3 Core - Feature #14711: Issue a warning when a BE user has a weak password (e.g. the same as the username)Closed2005-04-29

Actions
Actions

Also available in: Atom PDF