abbiati50 Posted January 15, 2005 Posted January 15, 2005 Dear Friends - i understand from the bug reports that if a session id link is passed to to others via forum / email etc etc - and a customers enter the shop by that link - when go to ceckout - process - they are able to see previous customers purchaser details (address) this was also documented in the bug report section - as: Did you pass on a link with the session ID by any chance? If you pass on a link that looks similar to this one: http://www.yoursite.com/shop/product_info....282964350170d1c do you know if a fix for this problem has been released?? thanks for your help marc :blush:
boxtel Posted January 15, 2005 Posted January 15, 2005 Dear Friends - i understand from the bug reports that if a session id link is passed to to others via forum / email etc etc - and a customers enter the shop by that link - when go to ceckout - process - they are able to see previous customers purchaser details (address) this was also documented in the bug report section - as: Did you pass on a link with the session ID by any chance? If you pass on a link that looks similar to this one: http://www.yoursite.com/shop/product_info....282964350170d1c do you know if a fix for this problem has been released?? thanks for your help marc :blush: <{POST_SNAPBACK}> only if the session is still active. Treasurer MFC
abbiati50 Posted January 16, 2005 Author Posted January 16, 2005 thanks Boxtel; astute intuition - never though about that - is any way to close sessions automatically if customers live any open session ? tx marco
boxtel Posted January 16, 2005 Posted January 16, 2005 thanks Boxtel; astute intuition - never though about that - is any way to close sessions automatically if customers live any open session ? tx marco <{POST_SNAPBACK}> sessions will automatically expire after a certain amount of time. That time is set in the php.ini file. The default is 180 minutes I believe. Treasurer MFC
Recommended Posts
Archived
This topic is now archived and is closed to further replies.