|
|
|
|
|
by moviuro
2760 days ago
|
|
I'm sure that Orange (Telecom) does that as well for Consumer password. "Technical debt" probably. (My password was reset by something/someone, as it contained a '*'; when trying to set it anew, 'star' was a forbidden character...) |
|
It makes you wonder that if there's a team that isn't as rigorous elsewhere (or a team on which pressure has been applied to accidentally leave in some such 'mistakes') what kind of SQL injection possibilities exist.