Welcome Guest, Not a member yet? Register   Sign In
general URL issue
#3

[eluser]Colin Williams[/eluser]
Quote:I see there some security problems...If you look at the URL you just can play wih the parameters directly and the maybe jump to some pages which should not be allowed to the user.

A good reason to not have "secret URLs" as your only layer of security. There are more robust solutions, like calling access checks when appropriate throughout your code.


Messages In This Thread
general URL issue - by El Forum - 07-21-2008, 04:56 AM
general URL issue - by El Forum - 07-21-2008, 05:06 AM
general URL issue - by El Forum - 07-21-2008, 05:45 AM
general URL issue - by El Forum - 07-21-2008, 05:55 AM
general URL issue - by El Forum - 07-21-2008, 06:29 AM



Theme © iAndrew 2016 - Forum software by © MyBB