Flash Sale:75% Off Hosting + Free DomainEnds in13h47m14sView Plans
Hostvento logoHostvento

Fix the "Password is Forbidden" Error in phpMyAdmin

This guide explains why phpMyAdmin refuses a login with this message, and how to fix it.

Databases2 min read14 steps1 screenshots

What does the error mean?

phpMyAdmin is a web tool for managing databases. A database holds your website's data. When you log in, phpMyAdmin checks your user name and password.

The error "Login without a password is forbidden by configuration" shows up when the password box is empty. It can also show up when the database user has no password set. By default, phpMyAdmin does not let anyone in with a blank password. This keeps your data safe.

Screenshot: The error "Login without a password is forbidden by configuration" shows up when the passw

Fix 1: Type a password

  1. Open the phpMyAdmin login page.
  2. Type your user name.
  3. Type your password in the password box.
  4. Click Go.

Your browser may have filled the box with nothing. Type it by hand to be sure.

Fix 2: Reset the password

If the user has no password, or you forgot it, set a new one. In cPanel, do this.

  1. Log in to cPanel.
  2. Open MySQL Databases.
  3. Under Current Users, click Change Password for your user.
  4. Enter a strong password and save.
  5. Update the password in your website's config file too.

Warning: Your website may stop working until its config file has the new password. Back up the file before you edit it.

Fix 3: Server owners (root access needed)

This part is for VPS and dedicated server owners who run phpMyAdmin themselves. You need root access, which is full control of the server.

  1. Connect to your server with SSH.
  2. Open the phpMyAdmin settings file. It is often /etc/phpmyadmin/config.inc.php or config.inc.php in the phpMyAdmin folder.
  3. Find the line with AllowNoPassword.
  4. Leave it as false. This is the safe choice.
  5. Set a password for the MySQL user instead.
Tip: Do not set AllowNoPassword to true on a live server. Anyone could then enter your database.

Still stuck?

Check that your user name is spelled right. Some hosts add a prefix to the user name, like account_user. If it still fails, open a support ticket.

Quick recap

  • The error means you tried to log in with an empty password.
  • Type the password, or set a new one for the user.
  • Update your website's config file after a password change.
  • Never allow blank passwords on a live server.