Showing posts with label eBay. Show all posts
Showing posts with label eBay. Show all posts

eBay fixes critical security holes

0
COM

The online auction site eBay has closed two vulnerabilities on its U.S. site. In one of the two is a critical SQL injection vulnerability in the vendor area, through which one could read and write access to a database of the company. By a SQL injection vulnerability to inject database commands via insufficiently filtered HTTP parameters is possible.