ProductCart E-Commerce Solutions Homepage
Forum Home Forum Home > ProductCart > Using ProductCart
  New Posts New Posts RSS Feed - PCI Compliance
  FAQ FAQ  Forum Search   Events   Register Register  Login Login

PCI Compliance

 Post Reply Post Reply
Author
Message
cs View Drop Down
Newbie
Newbie


Joined: 04-May-2009
Location: Arkansas
Status: Offline
Points: 8
Post Options Post Options   Thanks (0) Thanks(0)   Quote cs Quote  Post ReplyReply Direct Link To This Post Topic: PCI Compliance
    Posted: 14-April-2015 at 12:39pm
I thought that with Product Cart, PCI compliance would be simple.  But when we changed to a new Merchant Account, our website failed.  I would be glad to forward the report if someone can assist me in resolving the PCI Compliance problem.  Most of the errors in Product Cart involve cross site scripting and backup files disclosure.   What do I do?
Back to Top
steverguy View Drop Down
Groupie
Groupie


Joined: 05-April-2006
Location: United States
Status: Offline
Points: 44
Post Options Post Options   Thanks (0) Thanks(0)   Quote steverguy Quote  Post ReplyReply Direct Link To This Post Posted: 14-April-2015 at 12:48pm
What version of Product Cart are you on?  We got Cross Scripting errors too - but 5.0+ is supposed to take care of them.
"Remember, 72.5% of all statistics are made up."
Back to Top
cs View Drop Down
Newbie
Newbie


Joined: 04-May-2009
Location: Arkansas
Status: Offline
Points: 8
Post Options Post Options   Thanks (0) Thanks(0)   Quote cs Quote  Post ReplyReply Direct Link To This Post Posted: 14-April-2015 at 1:03pm
4.6.  Unfortunately, I am unable to upgrade to 5 at this time. 

Back to Top
Greg Dinger View Drop Down
Certified ProductCart Developers
Certified ProductCart Developers
Avatar

Joined: 23-September-2006
Location: United States
Status: Offline
Points: 238
Post Options Post Options   Thanks (0) Thanks(0)   Quote Greg Dinger Quote  Post ReplyReply Direct Link To This Post Posted: 16-April-2015 at 3:55pm

There are a number of XSS false-positives that have been reported by various PCI scans.  Have you spoken with your host about this?  Or submitted a ticket to Netsource? 

I've generally found that we could make the PCI complaint go away by filing a dispute and asking them to provide the violation.  They usually cannot.


Back to Top
 Post Reply Post Reply
  Share Topic   

Forum Jump Forum Permissions View Drop Down

Forum Software by Web Wiz Forums® version 12.04
Copyright ©2001-2021 Web Wiz Ltd.

This page was generated in 0.047 seconds.