That's pretty shocking... a good proportion of people would find that by accident!
The bug, of course, is constraining to the length of the user
supplied password; the effect was that entering _no_ password automatically authenticated the password (empty strings always
compare equal).
That's pretty shocking... a good proportion of people would find that by accident!
| Sysop: | Eric Oulashin |
|---|---|
| Location: | Beaverton, Oregon, USA |
| Users: | 106 |
| Nodes: | 16 (0 / 16) |
| Uptime: | 00:43:23 |
| Calls: | 8,649 |
| Calls today: | 5 |
| Files: | 9,521 |
| D/L today: |
325 files (451M bytes) |
| Messages: | 415,754 |
| Posted today: | 2 |