Changes between Initial Version and Version 1 of Ticket #36651


Ignore:
Timestamp:
Oct 9, 2025, 4:58:28 AM (42 hours ago)
Author:
heindrickdumdum0217
Comment:

Legend:

Unmodified
Added
Removed
Modified
  • Ticket #36651 – Description

    initial v1  
    2424
    2525But the current code checks password first, then check user can authenticate.
    26 If means if user receives different error message, user can sure at least username and password are correct.
     26It means if user receives different error message, user can sure at least username and password are correct.
    2727It may allow hackers can try with different password as many as times until they receive different error message.
    2828
Back to Top