+ Reply to Thread
Results 1 to 7 of 7

 

Thread: Buy.at login link - login and password showing

  1. #1
    Affiliate Marketeer

    Status
    Offline
    Join Date
    Aug 2003
    Location
    Manchester
    Posts
    855
    Thanks
    26
    Thanked 15 Times in 13 Posts


    This hasn't shown before, but your email and password now appear in the url.

    Now, not so sure about that being particulary secure.

    Surely URL's get written to the httpd logs?

    PHP Code:
    https://users.buy.at/menu/index.php?EMAIL=me@me.com&PASSWORD=yourpassword&MA=LINK 
    Link above

  2. #2
    Supercod's Avatar
    Super Moderator

    Status
    Offline
    Join Date
    Jul 2003
    Location
    Scotland, UK.
    Posts
    3,658
    Thanks
    14
    Thanked 26 Times in 12 Posts
    It's always been that way since the start. As long as you don't click any external links you will be fine.
    Clarke - On Twitter @ClarkeDuncan

    Check out my Blog at www.affiliatemarketingblog.co.uk

  3. #3
    Affiliate Marketeer

    Status
    Offline
    Join Date
    Aug 2003
    Location
    Manchester
    Posts
    855
    Thanks
    26
    Thanked 15 Times in 13 Posts
    Has it?

    Have only just noticed it.

    Doesn't really inspire me with confidence though.

  4. #4
    Affiliate

    Status
    Offline
    Join Date
    Dec 2004
    Location
    Hampshire, Uk
    Posts
    985
    Thanks
    14
    Thanked 12 Times in 10 Posts
    Ive never noticed that before?


    Maybe i never looked hard enough
    Thanks Lee

  5. #5
    Technology Manager

    Status
    Offline
    Join Date
    May 2006
    Posts
    27
    Thanks
    0
    Thanked 0 Times in 0 Posts
    We are aware of this issue and will get back with some more info, in due course. Suffice to say, we take security seriously and will endeavour to resolve this. As part of the ongoing development the buy.at network, we are constantly looking to improve our technology.

    I'll keep you posted.

    Regards,

    Rovin
    The buy.at affiliate network

    +44 (0)191 241 6500
    rovin.dawson@buy.at
    www.buy.at

  6. #6
    Supercod's Avatar
    Super Moderator

    Status
    Offline
    Join Date
    Jul 2003
    Location
    Scotland, UK.
    Posts
    3,658
    Thanks
    14
    Thanked 26 Times in 12 Posts
    Quote Originally Posted by monkeyman View Post
    Has it?
    Yes, don't just make up reply's you know but I was talking about it always being in the address bar when you log in via a link and not via the direct site.

    Here is a post from 2003 that backs it up.

    http://www.a4uforum.co.uk/showthread.php?t=11776

    Note that "If you login from our site, the password is never displayed in the address bar. It is only displayed if you login by the method shown above." But I checked login direct from main site today and it's showing in the URL that way also.

    Maybe they are in the middle of trying to fix this http://www.a4uforum.co.uk/showthread.php?t=33190 as that still happens a lot.
    Last edited by Supercod; 19-12-06 at 02:32 PM. Reason: update text
    Clarke - On Twitter @ClarkeDuncan

    Check out my Blog at www.affiliatemarketingblog.co.uk

  7. #7
    Technology Manager

    Status
    Offline
    Join Date
    May 2006
    Posts
    27
    Thanks
    0
    Thanked 0 Times in 0 Posts
    Hi,

    I'm afraid the error was in part due to us putting live a new Jump page ahead of the Management Area version 3 being released. Apologies for this brief error.

    However, please read the following forum for the exciting news of the MA V3.00 launch!

    http://www.a4uforum.co.uk/showthread...125#post288125

    Best regards

    Rovin
    The buy.at affiliate network

    +44 (0)191 241 6500
    rovin.dawson@buy.at
    www.buy.at

+ Reply to Thread


Thread Information

Users Browsing this Thread

There are currently 1 users browsing this thread. (0 members and 1 guests)

Bookmarks

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
To Top

Content Relevant URLs by vBSEO 3.5.0 RC2