Forum Moderators: phranque

Message Too Old, No Replies

How not to make a shopping cart...

Link which discusses a flaw in a shopping cart system

         

Dreamquick

3:36 pm on Dec 4, 2002 (gmt 0)

WebmasterWorld Senior Member 10+ Year Member



Found this article referenced on K5, since it was new and covered quite an interesting area I thought I'd share;

[infoworld.com...]

It discusses a flaw in a manufacturers shopping cart implementation and their "solution" to the bugs in their system.

Essentially they created a cart which was capable of passing all data to the client in the form of a cookie, since this included the final pricing information there is an obvious problem if the client can manage to modify this data they can then set their own prices.

However more interestingly it also highlights what is quite a wipespread and serious problem when people who don't undertstand the technology design shopping carts (if we are honest most IT/internet professionals will have seen a variation on this theme at least once in a commercial product).

- Tony

DaveAtIFG

4:46 pm on Dec 5, 2002 (gmt 0)

WebmasterWorld Senior Member 10+ Year Member



Thanks for the post DQ. Its' too bad the article doesn't tell us what merchants use this shopping cart, I could save a bundle on holiday shopping! ;)