Password fields with max character counts
blog.basementcommunity.com
blog.basementcommunity.com
I totally get the need to have a maxlength on your password input, since you don't want to be processing KBs of data each time a user logs in. But, one, make it reasonable (1000 is fine), and two, make it consistent wherever passwords are entered.
It takes essentially no effort to base64 encode a text field of arbitrary length and contents. If you are salting and hashing that password before storing, you would also not care about the contents or length of the password.