Quick Login   
 
Register AdminFusion Tutorials Post Fusion Forum Matrix
 
Old 02-21-2007, 11:12 PM   #1
...

 
Ashley's Avatar
 
Join Date: Jan 2006
Location: Devon, United Kingdom
Posts: 1,017
Ashley is a splendid one to beholdAshley is a splendid one to beholdAshley is a splendid one to beholdAshley is a splendid one to beholdAshley is a splendid one to beholdAshley is a splendid one to beholdAshley is a splendid one to beholdAshley is a splendid one to behold
Arrow Are your test accounts unsecure?

About half an hour ago, I came across a forum that disabled guest searching. For some reason, my attention turned to the login box. I simply typed in the username and password 'test' and bingo - it worked! And I did my search.

Then I started to think - there must be other forum admins with test accounts. Now a user account typically can't do more than completley spam your forum <which is quite easy to clean with a click of the magic "delete all posts by this user" button>, but if, for example, you were testing moderator/administrator accounts on your forum, and your test account had a simple-to-guess password with mod/admin rights - then some nasty person could wreck havoc on your forum. So, secure those test accounts! Just put a password which isn't easy to guess on them, or simply delete the account when you're done testing.
__________________

To view links or images in signatures your post count must be 10 or greater. You currently have 0 posts.
Ashley is offline   Reply With Quote
Old 02-21-2007, 11:24 PM   #2
Just keeping it real


 
demojames's Avatar
 
Join Date: Oct 2005
Location: Kent, WA
Posts: 2,857
demojames has a brilliant futuredemojames has a brilliant futuredemojames has a brilliant futuredemojames has a brilliant futuredemojames has a brilliant futuredemojames has a brilliant futuredemojames has a brilliant futuredemojames has a brilliant futuredemojames has a brilliant futuredemojames has a brilliant futuredemojames has a brilliant future
Send a message via AIM to demojames Send a message via MSN to demojames
If they were smart I am sure that the test account only has viewing permissions only, no posting privileges.
__________________

To view links or images in signatures your post count must be 10 or greater. You currently have 0 posts.
-
To view links or images in signatures your post count must be 10 or greater. You currently have 0 posts.
demojames is offline   Reply With Quote
Reply


Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools
Display Modes

 
Posting Rules

Similar Threads
Thread Thread Starter Forum Replies Last Post
Blue Devil Test Mule Get Shorty Off Topic 2 11-18-2006 04:52 AM
Internet Addiction Test (IAT) Ryan Off Topic 17 01-18-2006 05:18 PM

AdminFusion

All times are GMT +1. The time now is 03:51 PM. Powered by vBulletin® Version 3.8.2
Copyright ©2000 - 2010, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO 3.2.0

© 2009 AdminFusion | Advertising Opportunities | Legal | A member of the Crowdgather Forum Community
 
From:
Title:

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77