Weak Password Policy on Signup
Low
I
Infogram
Submitted None
Actions:
Reported by
mr_r3boot
Vulnerability Details
Technical details and impact analysis
Hi Team, i would like to let you know about password management issue.
#PoC:
1. Navigate to signup page.
2. Fill you details and give password as simple as ```123123```.
3. You can see you will be registered and there is no strong enforcement.
#Fix:
Use complex password management.
Regards,
Mr.R3boot.
Report Details
Additional information and metadata
State
Closed
Substate
Resolved
Submitted
Weakness
Violation of Secure Design Principles