dslreports logo
site
 
    All Forums Hot Topics Gallery
spc

spacer




how-to block ads


Search Topic:
uniqs
64
share rss forum feed

js29

join:2013-09-30

Password login length is capped

While the site allows you to create a new password of any length, the login-password field is capped at 12 characters: <INPUT TYPE=PASSWORD NAME="p" SIZE=10 MAXLENGTH=12 VALUE="">

...thus, it is impossible to login with that password.



Weirdal
Premium
join:2003-06-28
Grand Island, NE
kudos:20

I've never had any trouble logging in with my ridiculously long password. Looks like it's only displaying 12 characters though. Maybe everyone's passwords are truncated to 12?
--
»[Info] The DSLR Orangeface extension 2.0!



justin
..needs sleep
Australian
join:1999-05-28
New York, NY
kudos:15

1 edit
reply to js29

the password is uncapped in length but maybe I missed an input field, I will check.

edit: I think thats the last maxlength fields removed.



Weirdal
Premium
join:2003-06-28
Grand Island, NE
kudos:20

said by justin:

the password is uncapped in length but maybe I missed an input field, I will check.

edit: I think thats the last maxlength fields removed.

I have a feeling this is going to cause issues with some people. I have been using a "14" character password since the great hacking of 2011. I just learned that it was 12 characters all along, but apparently when I changed it and every time I've logged in since then, the field was truncating it to 12.

So now if I try to log in with the 14 char password I had memorized, it doesn't work. I had to type in just the first 12 characters to get in, but I wouldn't have known that if I didn't see this thread before you changed it.

edit: the big mystery here is how my password was truncated when I changed it originally. the password change page is clearly not limited to 12 chars, but maybe it was in 2011?
--
»[Info] The DSLR Orangeface extension 2.0!


justin
..needs sleep
Australian
join:1999-05-28
New York, NY
kudos:15

I was thinking about that and I can check the truncated version of the input password for a pass as well - for old passwords.