Beefy Boxes and Bandwidth Generously Provided by pair Networks
go ahead... be a heretic
 
PerlMonks  

Re: Re: shopping cart implementation

by perrin (Chancellor)
on Sep 16, 2002 at 19:35 UTC ( [id://198346]=note: print w/replies, xml ) Need Help??


in reply to Re: shopping cart implementation
in thread shopping cart implementation

DO NOT use form fields for price.

Incidentally, this is my favorite web security bug. I am amazed by how many people have done this. I'll take two new PCs for $3.00 please.

Replies are listed 'Best First'.
Re: Re: Re: shopping cart implementation
by shotgunefx (Parson) on Sep 16, 2002 at 19:56 UTC
    I must confess, I once HAD to do this to interface to a third party service, no other way. I did however validate it before they could finish the check out and when orders were imported.

    Suprisingly, no one even attempted it.
    (This is not downplaying the danger! It only takes a couple HDTV flat panels and your ****ED.)

    -Lee

    "To be civilized is to deny one's nature."

Log In?
Username:
Password:

What's my password?
Create A New User
Domain Nodelet?
Node Status?
node history
Node Type: note [id://198346]
help
Chatterbox?
and the web crawler heard nothing...

How do I use this?Last hourOther CB clients
Other Users?
Others making s'mores by the fire in the courtyard of the Monastery: (3)
As of 2024-04-26 02:38 GMT
Sections?
Information?
Find Nodes?
Leftovers?
    Voting Booth?

    No recent polls found