Loading HuntDB...

Enforce minimum master password complexity

Medium
T
Tor
Submitted None
Reported by dhiraj-mishra

Vulnerability Details

Technical details and impact analysis

Password in Configuration File
Hi Team, Actual results: There is no password complexity set for Master password in about:preferences#security , Because I was able to set my password like 123,123456,www, admin etc which is really common, apart from that we can use spaces as well in master password i was able to set space as my master password :/ Expected results: Recommendation - Provide robust rules including upper lower letters, special characters etc. Ref: https://bugzilla.mozilla.org/show_bug.cgi?id=1408427 Regards Dhiraj

Report Details

Additional information and metadata

State

Closed

Substate

Not-Applicable

Submitted

Weakness

Password in Configuration File