Issue with coppermine. Issue with coppermine.
 

News:

cpg1.5.48 Security release - upgrade mandatory!
The Coppermine development team is releasing a security update for Coppermine in order to counter a recently discovered vulnerability. It is important that all users who run version cpg1.5.46 or older update to this latest version as soon as possible.
[more]

Main Menu

Issue with coppermine.

Started by robertall, August 05, 2005, 02:24:51 PM

Previous topic - Next topic

0 Members and 1 Guest are viewing this topic.

robertall

I noticed in the database that the passwords are not hashed. May i ask if there is a reason for this?

Nibbler

The original creator of Coppermine set it up that way. If you update a 1.3 gallery to 1.4 then you get the option to convert to md5 hashes. New installations of 1.4 use md5 hashing by default.

robertall

Thanks. I was most worryed about people hacking my cpanel e.c.t. It has happened before, but with some other (more advanced forum) software.

Nibbler

There is a mod you can apply to 1.3.x if you are worried, or you can bridge coppermine to a forum and use it's user table instead.