Marco van Herwaarden and Knippschild ,thanks for the replies.There is no way the guy who emailed my admin could have got his admin password.They live around 10,000 km from each other.
He just said he used the tool named phpbb spammer,edited the cookies he got from my site and then was able to log in using my admins id.How on earth is that possible if he doesnt have the password. ?
What exactly is this phpbb spammer thing ? is it some sort of hacking tool ?
anyway,i will be ugrading to 3.6.8 in a few hours time.
Also,is it possible to allow admincp logins only from a certain ip address ?
|