Jump to content
  • Checkout
  • Login
  • Get in touch

osCommerce

The e-commerce.

?** Security Issue**?


FastEddy

Recommended Posts

A logged in user sent me a link to his shopping cart with items in it.

I clicked on the link and found an empty cart.

I added an item and went to check out.

 

I was logged in as the user that sent me the link..........With full access to his account.

 

I logged off and tried again with the same results.

 

Does this happen on all sites or did I do something wrong to mine?

Link to comment
Share on other sites

This is related to the big thread in the 'Development' forum, check it out, under the name 'Security Proposal' the latest CVS goes a long way towards fixing this problem.

Link to comment
Share on other sites

Archived

This topic is now archived and is closed to further replies.

×
×
  • Create New...