Haz
Starting Member
2 Posts |
Posted - 04 July 2001 : 06:44:47
|
Hi, I have just managed to install the forums onto a test system and created my self a new password for the admin user. I then poked around at the database (mysql) and i noticed that the password are stored as plain text! Is there anywhere that i have missed or any thing indevelopment that encrypts the password so i or other potential admins cannot read it. As far as i understand it, its a manditory step in most systems that involve passwords, to encrypt them and just give admins the power to change it. Unfortunatly trust is not good enough. Regards, Richard Harrison.
|
|