J-Security Center

Title: EZMall2000 Credit Card Exposure Vulneribility

Severity: HIGH

Description:

EZMall 2000 is an e-commerece application designed to handle the online purchases of products by customers. However, when the package is improperly configured, search engines may index the data of customers, including sensitive information such as credit card numbers.

A site using this software may put customers at risk when the package is improperly configured. By storing the information input into the software in a directory that can be searched and indexed by robots and spiders, these software packages may index the data files of customers and make them available on search engines. This makes it possible for a user with malicious motives to use search engines as a means of finding vulnerable sites, and then visiting the sites to gain sensitive information such as credit card numbers, addresses, and other personal information.

Affected Products:

  • Seaside Enterprises EZMall 2000.0.0

Juniper Networks provides this content via a wide variety of sources and production methods. If notified of errors or omissions in the content of this page, Juniper Networks, at its discretion, will modify or remove the page or leave the content as is, depending on various factors including but not limited to the reputation and authority of the party providing the notification. Please use the contact information displayed elsewhere on this page to report any errors or omissions regarding the content on this page.