Jump to content
  • Checkout
  • Login
  • Get in touch

osCommerce

The e-commerce.

security of oscommerce


tomliuwhite

Recommended Posts

Posted

A lot of people seem to think oscommerce has a security flaw because of register globals. Does anyone know what that means? And possibly explain what the security hole is? Many thanks in advance.

Posted
A lot of people seem to think oscommerce has a security flaw because of register globals. Does anyone know what that means? And possibly explain what the security hole is? Many thanks in advance.

Register globals is a problem for badly coded sites or sites which use methods which osCommerce does not use. While there have been in the past security problems they were long ago addressed and not related to the use of register globals.

 

Just think about it. This is the place where people come with problems and there are thousands upon thousands of osC installations running world wide. How many posts have you seen here about security problems? Those you do see are usually the result of errors by careless or naive users.

 

Sometimes I'll follow a link from an ad just to see what system it's running. For every store you may see in these forums I'd guess there are at least 20 others quietly working away that you've never seen or heard of.

Local: Mac OS X 10.5.8 - Apache 2.2/php 5.3.0/MySQL 5.4.10 • Web Servers: Linux

Tools: BBEdit, Coda, Versions (Subversion), Sequel Pro (db management)

Posted
Register globals is a problem for badly coded sites or sites which use methods which osCommerce does not use. While there have been in the past security problems they were long ago addressed and not related to the use of register globals.

 

Just think about it. This is the place where people come with problems and there are thousands upon thousands of osC installations running world wide. How many posts have you seen here about security problems? Those you do see are usually the result of errors by careless or naive users.

 

Sometimes I'll follow a link from an ad just to see what system it's running. For every store you may see in these forums I'd guess there are at least 20 others quietly working away that you've never seen or heard of.

Thanks for your help!

Archived

This topic is now archived and is closed to further replies.

×
×
  • Create New...