Comment 26 for bug 738721

Revision history for this message
ka (kandresen2000) wrote :

Also came to think - even admin password can be easily reseted even when lost... How:
Generate a new database, set a password (with the same salt as the original base) then copy the new encrypted password to the admin password field and there you go...

There are absolutely no good arguments for keeping passwords in cleartext.