Client/Server application that does not authenticate users

From: Brian Erdelyi (brian_erdelyi@yahoo.com)
Date: Thu Aug 12 2004 - 09:39:45 EDT


I have recently discovered a client/server application
where the server does not authenticate users prior to
granting them access. Sadly, this even happens to be
a financial application for equities trading (sales,
trades, oferrings and order management) used by some
very large firms.

How common is it to find applications that don't
authenticate users prior to granting access?

                
__________________________________
Do you Yahoo!?
Yahoo! Mail is new and improved - Check it out!
http://promotions.yahoo.com/new_mail



This archive was generated by hypermail 2.1.7 : Sat Apr 12 2008 - 10:53:58 EDT