[wp-trac] [WordPress Trac] #5837: WordPress and Moveable Type import create weak password

WordPress Trac wp-trac at lists.automattic.com
Wed Feb 13 10:06:18 GMT 2008


#5837: WordPress and Moveable Type import create weak password
-----------------------+----------------------------------------------------
 Reporter:  pishmishy  |       Owner:  pishmishy                   
     Type:  defect     |      Status:  new                         
 Priority:  high       |   Milestone:  2.5                         
Component:  Security   |     Version:  2.3.3                       
 Severity:  normal     |    Keywords:  password import wordpress mt
-----------------------+----------------------------------------------------
 wp-admin/import/mt.php and wp-admin/import/wordpress.php need to do
 something better than creating accounts with the password "changeme". For
 an import with few users it's not certain that the user will change all
 the new passwords, for an import with large numbers of users it could be a
 particularly laborious task.

 Suggest generating a random password with the usual algorithm. User can
 have the admin change the password if needed, or run through the recovery
 process.

-- 
Ticket URL: <http://trac.wordpress.org/ticket/5837>
WordPress Trac <http://trac.wordpress.org/>
WordPress blogging software


More information about the wp-trac mailing list