If it were me in your position, I'd make sure it was impossible to change to password to something that insecure. Whatever time you spend on that, even if you have to write it from scratch, would be ...