Wednesday, 2 December 2015

Zen Cart Flaw Fills Hackers’ Stockings

Ho ho ho: Talk about the holiday gift that keeps on giving…for hackers, that is. A critical flaw has been found in Zen Cart, one of the largest online store management systems. The issue could impact a wide swath of its online retailer customer base.

Web application security firm High-Tech Bridge notified the company that the detectedvulnerability allows remote attackers to execute arbitrary code on the vulnerable web applications. And, it allows that to be done with privileges of the web server. That means that hackers can compromise entire web application databases (including all customers’ data), and place malware on the vulnerable websites.

The impact could be fairly widespread: Zen Cart is being used on hundreds of thousands of live e-commerce websites, so the administrators of affected systems need to apply the patch as soon as possible.

It all goes to show that payment security should be kept top of mind for consumers and administrators alike, especially during the festive season. For the full article click here 



from hacker samurai http://ift.tt/1SvZun5
via IFTTT

No comments:

Post a Comment