Re: Shopping cart other than OSCommerce? [LONG]

2010-12-09 Thread Robert Bonomi
From owner-freebsd-questi...@freebsd.org Wed Dec 8 18:35:17 2010 Date: Wed, 8 Dec 2010 19:34:53 -0500 From: Jerry freebsd.u...@seibercom.net To: FreeBSD freebsd-questions@freebsd.org Subject: Re: Shopping cart other than OSCommerce? [LONG] On Thu, 09 Dec 2010 10:07:57 +1000 Da Rock

Re: Shopping cart other than OSCommerce? [LONG]

2010-12-09 Thread Gary Kline
On Wed, Dec 08, 2010 at 07:34:53PM -0500, Jerry wrote: On Thu, 09 Dec 2010 10:07:57 +1000 Da Rock freebsd-questi...@herveybayaustralia.com.au articulated: [snip] And thats why Facebook and all those social network sites are bad news. What happened to anonymity on the internet? Everyone

Re: Shopping cart other than OSCommerce?

2010-12-08 Thread Da Rock
On 12/08/10 10:57, Chuck Swiger wrote: On Dec 7, 2010, at 4:27 PM, Da Rock wrote: One to point out the obvious, and two to clarify your view here: why not php? Php was the scripting used, but if used poorly will create a security risk in the web app. That means that the vulnerability is

Re: Shopping cart other than OSCommerce?

2010-12-08 Thread Arthur Chance
On 12/07/10 22:42, Jerry wrote: On Tue, 07 Dec 2010 16:10:38 -0600 Jorge Biquezjbiq...@intranet.com.mx articulated: [snip] I have found several already with Google just not sure what path to follow and that's why I wanted to know what suggestions other has on what are using actually

Re: Shopping cart other than OSCommerce?

2010-12-08 Thread Chuck Swiger
On Dec 8, 2010, at 5:37 AM, Da Rock wrote: Thanks for the heads up. What language do you recommend then based on these security reports? Well, I've been implementing online stores and content-management/publishing systems written in Java and Objective-C for quite a while, so I'm biased

Re: Shopping cart other than OSCommerce? [LONG]

2010-12-08 Thread Karl Vogel
On Tue, 7 Dec 2010 21:23:04 -0700, Dale Scott dalesc...@shaw.ca said: D I'll interpret that as saying a large percentage of the PHP apps vying D for your attention are crap, but buyer beware. Just be careful, have a D healthy level of scepticism, and keep your eyes open. Yup. D I don't

Re: Shopping cart other than OSCommerce? [LONG]

2010-12-08 Thread Jerry McAllister
On Wed, Dec 08, 2010 at 04:13:25PM -0500, Karl Vogel wrote: On Tue, 7 Dec 2010 21:23:04 -0700, Dale Scott dalesc...@shaw.ca said: D I'll interpret that as saying a large percentage of the PHP apps vying D for your attention are crap, but buyer beware. Just be careful, have a D healthy

Re: Shopping cart other than OSCommerce?

2010-12-08 Thread Kevin Kinsey
Chuck Swiger wrote: You don't magically get immunity from SQL injection by using JDBC or EOF or whatever, but using bound variables in queries rather than feeding user input into raw SQL, or invoking stored procedures or user-defined functions instead will mitigate one of the more common

Re: Shopping cart other than OSCommerce? [LONG]

2010-12-08 Thread Da Rock
On 12/09/10 07:13, Karl Vogel wrote: On Tue, 7 Dec 2010 21:23:04 -0700, Dale Scottdalesc...@shaw.ca said: D I'll interpret that as saying a large percentage of the PHP apps vying D for your attention are crap, but buyer beware. Just be careful, have a D healthy level of scepticism,

Re: Shopping cart other than OSCommerce? [LONG]

2010-12-08 Thread Jerry
On Thu, 09 Dec 2010 10:07:57 +1000 Da Rock freebsd-questi...@herveybayaustralia.com.au articulated: [snip] And thats why Facebook and all those social network sites are bad news. What happened to anonymity on the internet? Everyone I know worth their salt steers well clear of them... Nothing

Re: Shopping cart other than OSCommerce?

2010-12-08 Thread Jonathan McKeown
On Thursday 09 December 2010 01:07:38 Kevin Kinsey wrote: Chuck Swiger wrote: You don't magically get immunity from SQL injection by using JDBC or EOF or whatever, but using bound variables in queries rather than feeding user input into raw SQL, or invoking stored procedures or

Re: Shopping cart other than OSCommerce?

2010-12-07 Thread Chuck Swiger
On Dec 7, 2010, at 12:36 PM, Jorge Biquez wrote: With a provider where I had a dedicated server, not running FreeBsd , the entire server was hacked and before leaving them, the tech support people said that the hacking was because of a problem with some libraries under PHP AND OSCOMMERCE.

Re: Shopping cart other than OSCommerce?

2010-12-07 Thread Jorge Biquez
Hello all. Thanks for the time and rapid response Mr Chuck. Yes. Seems like the guilty one was OSCommerce. I am looking exactly for other option, as you say maybe not PHP ones and that's why asked for advice based on experinces of what people is using. I am looking for python option also. My

Re: Shopping cart other than OSCommerce?

2010-12-07 Thread Jerry
On Tue, 07 Dec 2010 15:32:06 -0600 Jorge Biquez jbiq...@intranet.com.mx articulated: At 03:01 p.m. 07/12/2010, Chuck Swiger wrote: On Dec 7, 2010, at 12:36 PM, Jorge Biquez wrote: With a provider where I had a dedicated server, not running FreeBsd , the entire server was hacked and before

Re: Shopping cart other than OSCommerce?

2010-12-07 Thread Jorge Biquez
At 04:04 p.m. 07/12/2010, you wrote: On Tue, 07 Dec 2010 15:32:06 -0600 Jorge Biquez jbiq...@intranet.com.mx articulated: At 03:01 p.m. 07/12/2010, Chuck Swiger wrote: On Dec 7, 2010, at 12:36 PM, Jorge Biquez wrote: With a provider where I had a dedicated server, not running FreeBsd ,

Re: Shopping cart other than OSCommerce?

2010-12-07 Thread Matthew Seaman
On 07/12/2010 21:32, Jorge Biquez wrote: Seems like the guilty one was OSCommerce. I am looking exactly for other option, as you say maybe not PHP ones and that's why asked for advice based on experinces of what people is using. Take a look at Magento -- it's in ports: www/magento. Despite

Re: Shopping cart other than OSCommerce?

2010-12-07 Thread Jerry
On Tue, 07 Dec 2010 16:10:38 -0600 Jorge Biquez jbiq...@intranet.com.mx articulated: [snip] I have found several already with Google just not sure what path to follow and that's why I wanted to know what suggestions other has on what are using actually under Freebsd. Of course there

Re: Shopping cart other than OSCommerce?

2010-12-07 Thread Da Rock
On 12/08/10 07:01, Chuck Swiger wrote: On Dec 7, 2010, at 12:36 PM, Jorge Biquez wrote: With a provider where I had a dedicated server, not running FreeBsd , the entire server was hacked and before leaving them, the tech support people said that the hacking was because of a problem with

Re: Shopping cart other than OSCommerce?

2010-12-07 Thread Chuck Swiger
On Dec 7, 2010, at 4:27 PM, Da Rock wrote: One to point out the obvious, and two to clarify your view here: why not php? Php was the scripting used, but if used poorly will create a security risk in the web app. That means that the vulnerability is the coder's problem; not php itself. God

RE: Shopping cart other than OSCommerce?

2010-12-07 Thread Dale Scott
As for PHP and security, well, when someone ends up getting married to three abusive drunks in a row, there is more going on with that then random chance or even bad luck. I'll interpret that as saying a large percentage of the PHP apps vying for your attention are crap, but buyer beware. Just