icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons_061

AppServ Open Project Remote Insecure Default Password

High

Synopsis

The remote host is configured with default or easily-guessed credentials.

Description

The remote MySQL server appears to allow connections as root without a password. AppServ Open Project, an installation utility for APACHE/PHP/MySQL under Windows, creates a passwordless database by default. Anyone can log into the database and change data or increase their privileges.

Solution

Connect to the remote MySQL database and set a password.