Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length

 
Advanced search

2501 Posts in 646 Topics- by 1310 Members - Latest Member: crustymonkey

eTicket CommunityGeneralGeneral Discussion (Moderators: jason, Hummdis)Topic: eTicket is unsecure
Pages: [1]   Go Down
Print
Author Topic: eTicket is unsecure  (Read 1589 times)
0 Members and 1 Guest are viewing this topic.
adonis827
New Member
*

Karma: +0/-0
Offline Offline

Posts: 4


« on: May 26, 2009, 02:19:37 AM »

Having tested 1. 7. 3 for quite some time, I am of the opinion that eTicket is unsecure (mostly privacy related) and cannot be used in a production environment just for the simple fact that it uses an email - ticketid pair which it affixes in a get url. 

Just imagine personA using a computer to access an eticket site.  Then after personB uses the same computer and he/she checks out the address bar and sees the url from an eticket site with email and ticketid.  personB may use this to check the tickets of personA.

So I am wondering if eTicket is doing anything about it. 
Logged
jason
Publisher and Developer
Administrator
Full Member
*****

Karma: +401/-1
Offline Offline

Posts: 174


WWW
« Reply #1 on: May 28, 2009, 03:14:40 PM »

As a community project you're free to make improvements and commit those changes for future releases.
Logged
adonis827
New Member
*

Karma: +0/-0
Offline Offline

Posts: 4


« Reply #2 on: May 28, 2009, 09:33:14 PM »

I would probably do it if eTicket would have an open source license. 
Logged
Hummdis
Moderator
Super Member
*****

Karma: +13/-0
Offline Offline

Posts: 557



WWW
« Reply #3 on: June 09, 2009, 08:06:32 AM »

I would probably do it if eTicket would have an open source license. 

And the proof that you have that is does not have an OSL??

Hmmm....looks open source to me.

Quote
# Permission is hereby granted to use, copy, modify and/or distribute this Package, provided that:

   1. All copyright notices within source files and as generated by the Software as output are retained, unchanged.
   2. Any Distribution of this Package, whether as a Modified Package or not, includes this file and is released under the terms of this Agreement. This clause is not dependent upon any measure of changes made to this Package.
   3. This Package, Modified Packages, and derivative works may not be sold or released under any paid license. Copying fees for the transport of this Package, support fees for installation or other services, and hosting fees for hosting the Software may, however, be imposed.
   4. Any Distribution of this Package, whether as a Modified Package or not, requires the registration of the Distributor at eTicket website.

# You may make Modifications to this Package or a derivative of it, and distribute your Modifications in a form that is separate from the Package, such as patches. The following restrictions apply to Modifications:

   1. A Modification must not alter or remove any copyright notices in the Software or Package, generated or otherwise.
   2. When a Modification to the Package is released, a non-exclusive royalty-free right is granted to Digital Frontiers LLC to distribute the Modification in future versions of the Package provided such versions remain available under the terms of this Agreement in addition to any other license(s) of the initial developer.
   3. Any Distribution of this Package, whether as a Modified Package or not, requires the registration of the Distributor at eTicket website.

# Permission is hereby also granted to distribute programs which depend on this Package, provided that you do not distribute any Modified Package without being a Registered Distributor.
# Digital Frontiers UTO reserves the right to change the terms of this Agreement at any time, although those changes are not retroactive to past releases. Changes to this document will be announced via email using the Simple Machines email notification list. Failure to receive notification of a change does not make those changes invalid. A current copy of this Agreement can be found on the eTicket Website.
# This Agreement will terminate automatically if you fail to comply with the limitations described herein. Upon termination, you must destroy all copies of this Package, the Software, and any derivatives within 48 hours.

Yes, yes I believe it IS open source! Report the changes and leave the copyrights alone and you can mod whatever you want.

Read all 614 words of the OSL before making statements about it.
Logged

Don't PM me directly for help.  Post to the forums, that's what they are for after all.  PM's to me that request help will be ignored.

Hummdis Communications - Freelance Website Design & IT Consulting
eTicket Community
   

 Logged
Pages: [1]   Go Up
Print
eTicket CommunityGeneralGeneral Discussion (Moderators: jason, Hummdis)Topic: eTicket is unsecure
Jump to: