vercetti
June 7th, 2003, 04:56 AM
Hi, guys I have a question.
It's about this website:
www.infousa.com
which is a commercial website selling consumer databases to marketing companies, and if you follow one of those databses links, you are going to be prompted for personal and credit-card information. Well, the problem is that if you use this link
http://adp.infousa.com/fs/consumer.htm?bas_fssession={bas_fssession}&bas_vendor=%7bbas_vendor%7d&bas_type=FADP&bas_page=1&bas_action=search
you can actually access the databse for free. I was wondering if this is a security hole? and if yes, what should be done about it?(email webmaster maybe...?)
Thanks a lot
It's about this website:
www.infousa.com
which is a commercial website selling consumer databases to marketing companies, and if you follow one of those databses links, you are going to be prompted for personal and credit-card information. Well, the problem is that if you use this link
http://adp.infousa.com/fs/consumer.htm?bas_fssession={bas_fssession}&bas_vendor=%7bbas_vendor%7d&bas_type=FADP&bas_page=1&bas_action=search
you can actually access the databse for free. I was wondering if this is a security hole? and if yes, what should be done about it?(email webmaster maybe...?)
Thanks a lot