[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [cobalt-security] Weird admin password issues



Hi Erich,

I had this problem when my freshly installed RaQ3 was put online.

IIRC, you have to create a site on $IPADDR else you get straight into the admin page...

Rgds..

Joe

Erich Zigler wrote:

I am experiencing a weird issue with one of our Cobalt RAQ2's. It seems when
you go to the the web-based admin interface at http://$IPADDR/admin it will
let you in without a password. But if you telnet in to $IPADDR it requires
the already set admin password to login.

I have changed the admin password via the web interface, and went to an
entirely different computer and it let me in without a password. I have
changed the admin password via the command line and the web interface still
lets me in without a password.

I have searched the mailing lists, and the manuals on cobalt.com. I have
also patched the server up to the latest security release as of yesterday.
No net change.
Any help you could provide I would greatly appreciate.

Thank you.