Professional Webmasters Community
Would you like to react to this message? Create an account in a few clicks or log in to continue.

Vulnerability to www.paypal.com

Go down

Vulnerability to www.paypal.com Empty Vulnerability to www.paypal.com

Post  andry Wed Aug 11, 2010 10:59 pm

There was found Insufficient Anti-automation vulnerabilities at http://www.paypal.com - site of the famous electronic payment system PayPal. Although PayPal and declares that

monitors the safety of their own sites, but need protection from Insufficient Anti-automation they did not heed.

Regarding sites of electronic payment systems last time I wrote about the vulnerability of WebMoney.ru.

Insufficient Anti-automation:

https: / / www.paypal.com/cgi-bin/webscr?cmd=_registration-run
https: / / www.paypal.com/ewf/f=pps_spf

Registration forms and contact do not protect against automated queries (captcha). Although the registration for some countries may require PayPal SMS-validation (which can be a

protection against automated attacks, but only for some countries), the contact form in case of no limits.
andry
andry
Moderator
Moderator

Posts : 467
Join date : 2010-05-07

Back to top Go down

Back to top

- Similar topics

 
Permissions in this forum:
You cannot reply to topics in this forum