Go homepage(回首页)
Upload pictures (上传图片)
Write articles (发文字帖)

The author:(作者)aaa
published in(发表于) 2013/12/6 12:32:32
New 12306.CN were exposes vulnerabilities just on the line, customer service denied,

New on-line 12306.CN revealed it was loopholes in customer service denied-train ticket booking online, train tickets booking online website, 12306,www.12306.cn-IT information New on-line 12306.CN revealed it was loopholes in customer service denied

New 12,306 website launch today, but after only a few hours, it is pointed out that there are loopholes.

Well-known third-party vulnerability reporting platform at its official website that the dark clouds, the new 12,306 booking site there is more than one logical vulnerabilities, this could cause the late-booking software, booking injustice caused by flooding.

Cloud also said 12,306 due to improper design still other vulnerability, the vulnerability could lead to information disclosure: you can query, login name, email, name, ID, phone. But cloud does not point out the flaw is present in the new or old version of 12,306 website and details has notified the manufacturer and has been the manufacturer has confirmed.

New site to use the 12,306 website to verify the situation, 12,306 service denied the existence of loopholes, and indicated that they had not received a feedback from users of such information.


(

新版12306.cn刚上线就被曝漏洞,客服否认 - 火车票网上订票,火车票网上订票官网,12306,www.12306.cn - IT资讯
新版12306.cn刚上线就被曝漏洞,客服否认

今日新版12306网站上线,但仅过了几个小时便被指出存在漏洞。

国内知名第三方漏洞报告平台乌云在其官方网站上称,新版12306网站存在多个订票逻辑漏洞,此漏洞可能导致后期订票软件泛滥造成订票不公。

乌云同时称,12306因设计不当还存其它漏洞,该漏洞会导致信息泄漏:可查询,登录名、邮箱、姓名、身份证、电话。不过乌云并没有指出该漏洞是存在于新版还是旧版的12306网站,并表示细节已通知厂商并且已得到厂商已经确认。

中新网致电12306网站核实情况,12306客服否认存在漏洞,并表示尚未接到用户反馈的此类信息。


)


If you have any requirements, please contact webmaster。(如果有什么要求,请联系站长)





QQ:154298438
QQ:417480759