osCommerce Security Warnings
In recent weeks there has been an increasing number of attackers exploiting a vulnerability with insecure osCommerce installations, which allows admin access without a password usually resulting in spam mail-outs to your users.
As always, it is highly important to stay on top of security updates with all scripts, such as shopping carts and also to be proactive and ensure that you are taking adequate measures to secure your installation.
There are several useful threads discussing recent vulnerabilities for the different release versions of osCommerce on the osCommerce community forums including the following topic with updated reference information for securing your osCommerce installation:
How to Secure your osCommerce Site – http://forums.oscommerce.com/index.php?showtopic=313323
Related posts: