1 comment

[ 0.21 ms ] story [ 6.6 ms ] thread
In other words, SHA1 (password) becomes the actual password. As the author writes, "hardly an exploit": just a gentle reminder how insecure the default auth is.