The Official Website of AgoraCart and Agora.cgi
AgoraCart.com Demos Download AgoraCart User Manuals & Wiki Gold Members Forum Go Gold Now! Gold Version Memberships

AgoraCart.com

About
Features
Download
Payment Gateways
Send a Donation
Founders Club
BLOG: News & Updates

Showcases & Demos

AgoraCart Demos
Shop Live Stores

Downloads & Add-ons

Gold Version Downloads
DBwizz Database Mgr.
AgoraCart.com Store

Help & Support

User Manuals
Gold Version Users Forum
Gold Version Chat
Tech Support
Certified Agora Pros
Certified Designers
Hire a Freelancer

Gold Version Members

Member Benefits
Join Today!
Gold Members Home
Gold Version Users Forum
Gold Version Chat Rooms
Gold Version Downloads

For Store Owners

Merchant Accounts
Cool Resources
Advertise Here
"Powered by" Logos
Web Hosting Search

Misc.

Contact Us
MEET's Talking Guide
The Ancient Greek Agora






AgoraCart Free User Forums

This is the official FAQ and Cool Tips guide For the AgoraCart shopping Cart software


Official Sponsors of the AgoraCart Project:

       


RegisterSearchFAQLog in
Reply to topic Page 1 of 1
i can see people using the shopping cart!
Author Message
Reply with quote
Post i can see people using the shopping cart! 
Hi, I noticed the other day but thought I must have done it, however it just happened again and I know its not me. I went into my shopping site and it said I had x amount in my cart. I went and looked in my cart and there were products there. Someone else was online ordering things, and I could see what they were doing. Can I see because I am the administrator and it recognises me, or can anyone see other people ordering online - this is really weird. Obviously not ideal. My website is miraclebaby.co.nz/shopping.

View user's profile Send private message
Reply with quote
Post  
Obviously, you must be using v4.x... This will never happen in v5...
Also, you MUST have that cart ID hard coded into a page or more somewhere on your site...
I haven't even visited you site and I can already identify what is happening...

Okay, now I've visted the site and in visiting my very first page with links to the cart on page:
http://miraclebaby.co.nz/swimming_nappies.htm
I see the following:
Code:

<a href="http://miraclebaby.co.nz/shopping/agora.cgi?cart_id=8763496.5788*ut2BF7&amp;p_id=00086&amp;xm=on&amp;ppinc=search2">


See the cart_id info in there???? That is a HUGE security risk...

The link should look like:
Code:
<a href="http://miraclebaby.co.nz/shopping/agora.cgi?p_id=00086&xm=on&ppinc=search2">


You will need to go through ALL of the pages on your site and remove the cart_id info from ALL of the links that contain a cart_id...

HTH!


_________________
God Bless!
Bonnie - AgoraCart Moderator

Get a Gold Membership
View user's profile Send private message Send e-mail Visit poster's website AIM Address Yahoo Messenger ICQ Number
Display posts from previous:
Reply to topic Page 1 of 1
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum