captcha
captcha copied to clipboard
Be changed to weak captcha string by Attacker
Please validate it.
Environment
- PHP 7.3.6
- Laravel 6.13.1
- mews/captcha 3.0.2
Confirmation contents
Step. 1
I confirmed by below code. Set default
param.
Step. 2
Open input form. view ceah73im
.
Step. 3
Access to /captcha/math
path. And viewed math CAPTCHA(26 + 3
).
I think so math CAPTCHA weaker than default CAPTCHA.
Step. 4
Input 29
and submit form.
Step. 5
Did not send ceah73im
. But Succeed.