Im just starting to develop a E-commerce Shopping basket and i notice that 
when i goto add product to my session.basket the persons CFID, and CFToken 
are displayed in the URL.

i.e.
/outputsession.cfm?CFID=34&CFTOKEN=56471755

Is this normal?  Is this a security risk?

BTW I am adding the product with a form.
------------------------------------------------------------------------------
Archives: http://www.mail-archive.com/[email protected]/
To Unsubscribe visit 
http://www.houseoffusion.com/index.cfm?sidebar=lists&body=lists/cf_talk or send a 
message to [EMAIL PROTECTED] with 'unsubscribe' in the body.

Reply via email to