Metal Storm logo
Security issues with the password at login



‹‹ Back to Bugs
Posts: 5   Visited by: 34 users
18.07.2016 - 00:36
kuvaton
Hi guys!

I've encountered the problem, that if you log in with your account, only the first eight caharcters of the password are checked.
This means, if a person chooses a password longer than eight characters, the login ignores ebverything what is typed in beyond that. so you can choose a password like 12345678xaxa.
With or without the xaxa you can log in successfully.

Maybe this a little securityissue, cause if a person chooses a strong password, someone with bruteforce only has to use the first eight characters.

Please test this issue. Don't know if I am the only one who can recreate that problem.
Greetings!
Loading...
18.07.2016 - 15:41
Paz
Elite
Same here

I have a 9-character password, and the last 2 digits are the same number.
Loading...
18.07.2016 - 16:02
Karlabos
Meat and Potatos
I tested and it happens with me as well.
My original password has exactly 8 characters, say 'password'. (for instance)

I tried loging in with 'password45' and the login was sucessful =)
----
"Aah! The cat turned into a cat!"
- Reimu Hakurei
Loading...
18.07.2016 - 18:39
Bad English
Tage Westerlund
I never changed password and its uncaps, no digits
----
I stand whit Ukraine and Israel. They have right to defend own citizens.

Stormtroopers of Death - ''Speak English or Die''
apos;'
[image]
I better die, because I never will learn speek english, so I choose dieing
Loading...
18.07.2016 - 20:02
psykometal
A staff guy...
Elite
I will bring this up with our tech department. Thanks for info.
----
~Zep, Database and Forum Moderation~

Loading...