| possible security holes with outgoings links ecommerce links security |
ensute

msg:4433220 | 4:40 pm on Mar 25, 2012 (gmt 0) | I have some "information" links in my online shop, and two of them points outside the store. They link to some informative pages about partners and another about secure transactions. If the user has a pending order, informations about the order and cart should of course still be preserved (cookies). I want to know if such a link represents a security hole for the store or the customer ? Many thanks
|
g1smd

msg:4433225 | 4:55 pm on Mar 25, 2012 (gmt 0) | Cookies should be set "per domain" so other sites should not have access to them.
|
ensute

msg:4433249 | 7:47 pm on Mar 25, 2012 (gmt 0) | thank you g1smd for your quick and useful reply
|
|
|