Results 1 to 6 of 6

Thread: PHP Cake

  1. #1
    Join Date
    Jul 2010
    Location
    Close 2 U
    Posts
    549

    * PHP Cake

    Hi guys
    I have a php cake site "I have not developed it"

    When I access the panel,
    http://domain/adminpnel

    it access the site contril panel with out any password requirement ... + their is no directory called "adminpnel"

    I want to secure the panel is any way .. or at least to htaccess protection... but I don't know what directory should protect ...

    advise plz

    Not as that Much Expert
    I'm just a "LostEagle"
    _-_-_-_-_-_-_-_-_-_-_-_-_

  2. #2
    Join Date
    Oct 2002
    Location
    State of Disbelief
    Posts
    22,957
    What is the address showing in the address bar once it goes to the control panel? Look for .htaccess files in the root of the site that cause it to redirect/rewrite when you ask for that folder.

    I'd be most alarmed by the lack of login needed, personally.
    Having problems, or maybe questions about WHT? Head over to the help desk!

  3. #3
    Join Date
    Mar 2009
    Posts
    3,807
    php cake? or http://cakephp.org/ framework?

  4. #4
    Join Date
    Jul 2010
    Location
    Close 2 U
    Posts
    549
    the .htaccess has:

    <IfModule mod_rewrite.c>

    RewriteEngine on

    RewriteRule ^$ app/webroot/ [L]

    RewriteRule (.*) app/webroot/$1 [L]

    </IfModule>

    Not as that Much Expert
    I'm just a "LostEagle"
    _-_-_-_-_-_-_-_-_-_-_-_-_

  5. #5
    Join Date
    Jul 2010
    Location
    Close 2 U
    Posts
    549
    any advises ...
    its a "http://cakephp.org/"

    The story:
    I have a cakephp site "I have not developed it"

    When I access the panel,
    http://domain/adminpnel

    it access the site control panel without any password requirement ... + their is no directory called "admipanel"

    I want to secure the panel in any possible way .. or at least to htaccess protection... but I don't know what directory should protect ...

    advise plz

    Not as that Much Expert
    I'm just a "LostEagle"
    _-_-_-_-_-_-_-_-_-_-_-_-_

  6. #6
    Join Date
    Apr 2011
    Location
    United States
    Posts
    23
    If this is actually an exploit (maybe it is your SESSION automatically logging you in?) in this admin control panel I'd strongly recommend to search around for another one -- this one doesn't sound secure at all.

Similar Threads

  1. What kind of cake do you like?
    By Steven in forum Web Hosting Lounge
    Replies: 31
    Last Post: 02-28-2009, 04:03 AM
  2. [HIRING] PHP Programmer: Zend/Cake framework experience
    By the_pm in forum Employment / Job Offers
    Replies: 1
    Last Post: 04-08-2008, 09:28 AM
  3. Will I get a cake?
    By willigetacake in forum WHT Announcements, Feedback and Questions
    Replies: 6
    Last Post: 02-11-2008, 10:18 PM
  4. Zend vs. Cake - Which PHP Framework?
    By smkied in forum Programming Discussion
    Replies: 7
    Last Post: 11-30-2007, 04:27 AM
  5. first $40 takes the cake
    By Deziner_5 in forum Other Offers & Requests
    Replies: 10
    Last Post: 03-26-2003, 02:04 PM

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •