Jump to content

Invoice viewing issues


DaveDaveC

Recommended Posts

Hi,

 

Just want to know if this is true, if an invoice is created in the system

 

It will send to client with the following:

 

Customer A get the invoice=436

h t t p s://w w w.domain.com/billing/viewinvoice.php?id=436

 

So, the next cutomer, customer B invoice=437 :

h t t ps://w w w.domain.com/billing/viewinvoice.php?id=437

 

The problems here is that any clients can just type the php?id=???? to view people's invoice...say customer F type php?id=436 can view Customer A 's record???

 

Hmm..sure it is not a good ideas, right?

 

Anything can be done to avoid this...? :roll:

 

David

Link to comment
Share on other sites

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

  • Recently Browsing   0 members

    • No registered users viewing this page.
×
×
  • Create New...

Important Information

By using this site, you agree to our Terms of Use & Guidelines and understand your posts will initially be pre-moderated