Weak Password Policy on Signup

Disclosed: 2017-11-06 09:03:51 By mr_r3boot To infogram
Low
Vulnerability Details
Hi Team, i would like to let you know about password management issue. #PoC: 1. Navigate to signup page. 2. Fill you details and give password as simple as ```123123```. 3. You can see you will be registered and there is no strong enforcement. #Fix: Use complex password management. Regards, Mr.R3boot.
Actions
View on HackerOne
Report Stats
  • Report ID: 280504
  • State: Closed
  • Substate: resolved
  • Upvotes: 11
Share this report