[DiscordArchive] I was wondering if someone could tell me how to retrieve a forgotten password from acore_auth, accou
[DiscordArchive] I was wondering if someone could tell me how to retrieve a forgotten password from acore_auth, accou
Archived author: RIVEIR • Posted: 2022-10-02T20:01:57.806000+00:00
Original source
I was wondering if someone could tell me how to retrieve a forgotten password from acore_auth, account?
Archived author: Kira • Posted: 2022-10-02T20:03:02.516000+00:00
Original source
I believe you can change the password too
Archived author: Foe • Posted: 2022-10-02T20:03:50.235000+00:00
Original source
You can't, it's hashed. Change the password from console
Archived author: RIVEIR • Posted: 2022-10-02T20:04:56.993000+00:00
Original source
Ok thanks. I wasn't sure if there was a decryption that could be done.
Archived author: Foe • Posted: 2022-10-02T20:05:17.044000+00:00
Original source
That would make hashing pointless to begin with
Archived author: RIVEIR • Posted: 2022-10-02T20:06:40.361000+00:00
Original source
Indeed. I was just thinking since it's my server that there may be some option to change it since I have to have permission to log into mysql to begin with.
Archived author: Kira • Posted: 2022-10-02T20:07:06.714000+00:00
Original source
lol I remember back in 2006-2009 when people used EQDKP for their websites there was a spoof you could do to gain admin access on 90% of all sites because most were to lazy to apply the fix for the spoof. The passwords were stored in plain text and most people used same password everywhere for e-mails etc so I gained access to tons of b.net accounts and other accounts that way
Archived author: RIVEIR • Posted: 2022-10-02T20:08:48.591000+00:00
Original source
Ah dang yeah that is really bad.
Archived author: Revision • Posted: 2022-10-02T20:09:49.916000+00:00
Original source
Talking about spitting on their users
Archived author: Kira • Posted: 2022-10-02T20:12:17.756000+00:00
Original source
https://www.exploit-db.com/exploits/4030
https://www.exploit-db.com/exploits/3252
[Embed: EQdkp 1.3.2 - 'listmembers.php' SQL Injection]
https://www.exploit-db.com/exploits/4030
[Embed: EQdkp 1.3.1 - 'Referer Spoof' Remote Database Backup]
https://www.exploit-db.com/exploits/3252