<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/">
    <channel>
        <title>shopping cart using JS</title>
        <description>Have any of you seen this crazy sh*&amp;amp;?   http://www.nopdesign.com/freecart/

To me this is the most incredibly stupid idea ever!(Well,one of them,for sure!)

Simply modify your cookie to change just about everything from price to quantity.

Regards,
    cttnmth</description>
        <link>http://sla.ckers.org/forum/read.php?4,12702,12702#msg-12702</link>
        <lastBuildDate>Sat, 18 May 2013 14:31:01 -0500</lastBuildDate>
        <generator>Phorum 5.2.15a</generator>
        <item>
            <guid>http://sla.ckers.org/forum/read.php?4,12702,18120#msg-18120</guid>
            <title>Re: shopping cart using JS</title>
            <link>http://sla.ckers.org/forum/read.php?4,12702,18120#msg-18120</link>
            <description><![CDATA[hahah, yup!]]></description>
            <dc:creator>rsnake</dc:creator>
            <category>CSRF and Session Info</category>
            <pubDate>Mon, 10 Dec 2007 09:20:52 -0600</pubDate>
        </item>
        <item>
            <guid>http://sla.ckers.org/forum/read.php?4,12702,14267#msg-14267</guid>
            <title>Re: shopping cart using JS</title>
            <link>http://sla.ckers.org/forum/read.php?4,12702,14267#msg-14267</link>
            <description><![CDATA[even XSS's in the cookies..<br />
stupid f@*kers]]></description>
            <dc:creator>faz3d</dc:creator>
            <category>CSRF and Session Info</category>
            <pubDate>Tue, 31 Jul 2007 09:35:29 -0500</pubDate>
        </item>
        <item>
            <guid>http://sla.ckers.org/forum/read.php?4,12702,13783#msg-13783</guid>
            <title>Re: shopping cart using JS</title>
            <link>http://sla.ckers.org/forum/read.php?4,12702,13783#msg-13783</link>
            <description><![CDATA[I audited that software for a client 3-4 years back.  It is just as bad as it sounds.  Avoid it.]]></description>
            <dc:creator>rsnake</dc:creator>
            <category>CSRF and Session Info</category>
            <pubDate>Sat, 14 Jul 2007 16:34:33 -0500</pubDate>
        </item>
        <item>
            <guid>http://sla.ckers.org/forum/read.php?4,12702,12804#msg-12804</guid>
            <title>Re: shopping cart using JS</title>
            <link>http://sla.ckers.org/forum/read.php?4,12702,12804#msg-12804</link>
            <description><![CDATA[or simply order negative quantities.  also, xss in just about every field]]></description>
            <dc:creator>thornmaker</dc:creator>
            <category>CSRF and Session Info</category>
            <pubDate>Thu, 21 Jun 2007 01:17:34 -0500</pubDate>
        </item>
        <item>
            <guid>http://sla.ckers.org/forum/read.php?4,12702,12702#msg-12702</guid>
            <title>shopping cart using JS</title>
            <link>http://sla.ckers.org/forum/read.php?4,12702,12702#msg-12702</link>
            <description><![CDATA[Have any of you seen this crazy sh*&amp;?   http://www.nopdesign.com/freecart/<br />
<br />
To me this is the most incredibly stupid idea ever!(Well,one of them,for sure!)<br />
<br />
Simply modify your cookie to change just about everything from price to quantity.<br />
<br />
Regards,<br />
    cttnmth]]></description>
            <dc:creator>cttnmth</dc:creator>
            <category>CSRF and Session Info</category>
            <pubDate>Mon, 18 Jun 2007 17:27:59 -0500</pubDate>
        </item>
    </channel>
</rss>
