Nmap Security Scanner
*Intro
*Ref Guide
*Install Guide
*Download
*Changelog
*Book
*Docs
Security Lists
*Nmap Hackers
*Nmap Dev
*Bugtraq
*Full Disclosure
*Pen Test
*Basics
*More
Security Tools
*Pass crackers
*Sniffers
*Vuln Scanners
*Web scanners
*Wireless
*Exploitation
*Packet crafters
*More
Site News
Site Search:
Exploit World
Advertising
About/Contact
Credits
Sponsors:




fulldisclosure logo Full Disclosure mailing list archives

Red Hat Certification for... (however much you want to pay)
From: Sean Earp <smearp () mac com>
Date: Wed, 1 Oct 2003 17:43:22 -0700

From the Red Hat list... <http://www.redhat.com/archives/redhat-list/2003-October/msg00098.html>

Chris writes;

<https://www.redhat.com/apps/response/ enroll_training.html?num=RH300&name=RH300- RHCE%20Rapid%20Track%20Course&loc=New%20York,%20NY&date=20-OCT- 03&price=2498&M3_offer_code=49004>

----

When you click the link above, the URL will be redirected to a redhat url
with value of price=xxxx.  Just change the price, and you've changed the
cost of your Redhat Training.  See, RHCE IS affordable!

Nice programming Red Hat.

---

For that matter, you can change the course location, date, price, whatever you want! (all in the URL)

Isn't using URL parameters to track the price of a product the first thing you learn in BAD WEB COMMERCE PRACTICES 101?

-Sean ;)

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html


  By Date           By Thread  

Current thread:
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]