Please Engage Brain
Archive for: June, 2011
Rss feed of blogs Keith Appleyard - available for hire - Bromley | 16/06/2011 | 3700 views | 1 comment
As reported, this greatly surprises me - apparently placing the Credit Card number within the URL, and thus by changing the URL exposes other Credit Card details within having to go through the Access Validation routine. On the one hand you'd assume the system designers didn't 'actually' specify it to be this way, but that the programmer didn't as... Tags: Cards, SecurityGroup: Whatever...
Showing: 1