The Community Forums

Interact with an entire community of cPanel & WHM users!
  1. This site uses cookies. By continuing to use this site, you are agreeing to our use of cookies. Learn More.

Old Password Still Works

Discussion in 'Security' started by irwebco, Dec 27, 2014.

  1. irwebco

    irwebco Member

    Joined:
    Dec 28, 2013
    Messages:
    8
    Likes Received:
    0
    Trophy Points:
    1
    cPanel Access Level:
    Root Administrator
    hello
    i see new problem with cpanel
    i have more than 280 account on the my server on whm/cpanel
    one account is my website i test login to my account with my old password and i can login successfully !!! after login i tryed change password and logout a gain test for login with new and old password i can login with both password successfuly !!!

    after see this problem i tested my old password for login to other account on my server and i see login successfully to any account of my servver with this password !!
     
  2. cPanelPeter

    cPanelPeter Technical Analyst III
    Staff Member

    Joined:
    Sep 23, 2013
    Messages:
    569
    Likes Received:
    15
    Trophy Points:
    18
    cPanel Access Level:
    Root Administrator
    Twitter:
    Hello,

    Please open a support ticket using the link in my signature. We'll investigate this for you. Please post the ticket number here so that we can update this thread accordingly.
     
  3. quizknows

    quizknows Well-Known Member

    Joined:
    Oct 20, 2009
    Messages:
    940
    Likes Received:
    55
    Trophy Points:
    28
    cPanel Access Level:
    DataCenter Provider
    Is your old cPanel password your root password? Root's password works for every cPanel account by default...
     
  4. irwebco

    irwebco Member

    Joined:
    Dec 28, 2013
    Messages:
    8
    Likes Received:
    0
    Trophy Points:
    1
    cPanel Access Level:
    Root Administrator
    no this password is not for root user
     
  5. irwebco

    irwebco Member

    Joined:
    Dec 28, 2013
    Messages:
    8
    Likes Received:
    0
    Trophy Points:
    1
    cPanel Access Level:
    Root Administrator
    ok sir ticket submited now
    id = 5929401
     
  6. cPanelMichael

    cPanelMichael Forums Analyst
    Staff Member

    Joined:
    Apr 11, 2011
    Messages:
    30,678
    Likes Received:
    648
    Trophy Points:
    113
    cPanel Access Level:
    Root Administrator
    To update, it appears the user was logging in via cPanel with the reseller password. It's by design that cPanel is accessible using the root or reseller password.

    Thank you.
     
  7. jndawson

    jndawson Well-Known Member

    Joined:
    Aug 27, 2014
    Messages:
    103
    Likes Received:
    4
    Trophy Points:
    18
    cPanel Access Level:
    Root Administrator
    Holy crap, was my first thought upon reading this. To clarify, after testing on one of our panels, it seems that root pw works on root and every account 'below' root, and the reseller pw works on reseller account and every account assigned to it. Is this correct?
     
  8. jndawson

    jndawson Well-Known Member

    Joined:
    Aug 27, 2014
    Messages:
    103
    Likes Received:
    4
    Trophy Points:
    18
    cPanel Access Level:
    Root Administrator
    Upon closer review, it appears that at least one reseller pw works with root. That reseller is one of our internal accounts (we have assigned root privileges to it so that more than one of our staff can manage accounts at the same time). Is that also by design?
     
  9. cPanelMichael

    cPanelMichael Forums Analyst
    Staff Member

    Joined:
    Apr 11, 2011
    Messages:
    30,678
    Likes Received:
    648
    Trophy Points:
    113
    cPanel Access Level:
    Root Administrator
    Hello :)

    It depends on what you have configured under the "System" tab in "WHM >> Tweak Settings" for the following option:

    "Accounts that can access a cPanel user account"

    This setting specifies who can access a user’s cPanel account. Account-Owner refers to the particular reseller that owns the user account.

    Thank you.
     
  10. jndawson

    jndawson Well-Known Member

    Joined:
    Aug 27, 2014
    Messages:
    103
    Likes Received:
    4
    Trophy Points:
    18
    cPanel Access Level:
    Root Administrator
    D'oh!

    You may hit me upside the head with a 2x4. I knew that, but totally forgot about it when I was asked about it by one of the customer support techs.
     
  11. cPanelMichael

    cPanelMichael Forums Analyst
    Staff Member

    Joined:
    Apr 11, 2011
    Messages:
    30,678
    Likes Received:
    648
    Trophy Points:
    113
    cPanel Access Level:
    Root Administrator
Loading...

Share This Page