Jump to content
  • Checkout
  • Login
  • Get in touch

osCommerce

The e-commerce.

PayPal Express cancel and return to - bug?


greasemonkey

Recommended Posts

Hi All, I'm using PayPal Express 3.0 on 2.3.4 and have had one small issue brought up by a customers.

 

When a customer uses the Return to "my store" link from the PayPal payment screen you are returned back to the sites shopping_cart page on SSL (example; https://ssl.oscommerce.com/demo/2/shopping_cart.php). If the customer then try's to update the quantity of products using the update button - in some browsers (firefox for one) - a security warning is received.

 

I presume this is because the update button refreshes NOSSL - which is fine because shopping_cart is not typically seen on SSL - except when returned by PayPal.

 

Confirmed this behaviour with Firefox at http://demo.oscommerce.com/index.php

 

 

Although this page is encrypted, the information you have entered is to be sent over an unencrypted connection and could easily be read by a third party.

Are you sure you want to continue sending this information?

 

I realize this is not a huge issue... but thought it could be easily fixed by editing to?

      <?php echo tep_draw_form('cart_quantity', tep_href_link(FILENAME_SHOPPING_CART, 'action=update_product', 'SSL')); ?>

Although I'm no coder.... And I'm not clear what other impacts this would/could have?

Edited by greasemonkey
Link to comment
Share on other sites

:blink:
osCommerce based shop owner with minimal design and focused on background works. When the less is more.
Email managment with tracking pixel, package managment for shipping, stock management, warehouse managment with bar code reader, parcel shops management on 3000 pickup points without local store.

Link to comment
Share on other sites

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Unfortunately, your content contains terms that we do not allow. Please edit your content to remove the highlighted words below.
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

×
×
  • Create New...