Please whitelist cPanel in your adblocker so that you’re able to see our version release promotions, thanks!

The Community Forums

Interact with an entire community of cPanel & WHM users!

MySQL anonymous account security problem

Discussion in 'Database Discussion' started by Masimo, Feb 4, 2016.

  1. Masimo

    Masimo Well-Known Member

    Joined:
    Nov 19, 2015
    Messages:
    70
    Likes Received:
    2
    Trophy Points:
    8
    Location:
    Tbilisi
    cPanel Access Level:
    Root Administrator
    How to fix this MySQL security problem?

    [!!] User '@localhost' is an anonymous account.
     
    Stop hovering to collapse... Click to collapse... Hover to expand... Click to expand...
  2. cPanelMichael

    cPanelMichael Forums Analyst
    Staff Member

    Joined:
    Apr 11, 2011
    Messages:
    44,367
    Likes Received:
    1,857
    Trophy Points:
    363
    cPanel Access Level:
    Root Administrator
    Hello :)

    Could you provide more information about where you noticed that warning? These commands will tell you if a user is configured without a password:

    Code:
    mysql
    SELECT User, Host, Password FROM mysql.user;
    Note: Please don't post the output from that command as it includes password hashes. Documentation on this is available at:

    MySQL :: MySQL 5.6 Reference Manual :: 2.10.4 Securing the Initial MySQL Accounts

    Thank you.
     
    Stop hovering to collapse... Click to collapse... Hover to expand... Click to expand...
    Masimo likes this.
  3. Masimo

    Masimo Well-Known Member

    Joined:
    Nov 19, 2015
    Messages:
    70
    Likes Received:
    2
    Trophy Points:
    8
    Location:
    Tbilisi
    cPanel Access Level:
    Root Administrator
    Thank you very much for your reply.
    Its about 3861 rows! any idea?
     
    Stop hovering to collapse... Click to collapse... Hover to expand... Click to expand...
  4. Masimo

    Masimo Well-Known Member

    Joined:
    Nov 19, 2015
    Messages:
    70
    Likes Received:
    2
    Trophy Points:
    8
    Location:
    Tbilisi
    cPanel Access Level:
    Root Administrator
    SOLVED! I found and removed all anonymous accounts by mysqltuner script.

    Example:
    mysql> DROP USER ''@'localhost';
     
    Stop hovering to collapse... Click to collapse... Hover to expand... Click to expand...
  5. cPanelMichael

    cPanelMichael Forums Analyst
    Staff Member

    Joined:
    Apr 11, 2011
    Messages:
    44,367
    Likes Received:
    1,857
    Trophy Points:
    363
    cPanel Access Level:
    Root Administrator
    I am happy to see you were able to address the issue. Thank you for updating us with the outcome.
     
    Stop hovering to collapse... Click to collapse... Hover to expand... Click to expand...
    Masimo likes this.
Loading...

Share This Page

  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.
    Dismiss Notice