Web Hosting Talk







View Full Version : best shopping cart software?


purservices
06-08-2004, 07:48 PM
What is the best Shopping Cart Software that is out there for free. Preferably PHP/MySql

Corey Bryant
06-08-2004, 07:54 PM
Check out oscommerce.com or www.zencart.com - some even like X-cart

hosting&colo
06-09-2004, 05:47 AM
You will find osCommerce to be the most robust and mature of all of the free shopping cart apps.

-R

nybble
06-09-2004, 06:09 AM
Now... I don't mean to rain on anyones special moment here, but take a look at this link:

oscommerce (http://www.google.com/search?hl=en&lr=&ie=UTF-8&q=oscommerce+vulnerabilities&btnG=Search)

Now I know nothing is perfect... but if you ask me just about every cart today is so bloated there is a hole around every corner. You need a shopping cart, not something to run your bank books. Keep this in mind when you are looking around; the more popular the software the bigger it will be and in some cases the more exploits will be found.

I am not saying smaller software has no exploits.... heck, maybe they are wrose... a few moments on hotscripts made me sick, all those free script but most of them were insecure as a sac of monkeys. K.I.S.S Keep it simple. Don't use something with features you don't need cause all that will turn into is a new way for an attacker to exploit you.

hosting&colo
06-09-2004, 06:20 AM
Now... I don't mean to rain on anyones special moment here, but take a look at this link:
Did you look at the dates on those vulnerabilities, the are all from early 2003, which is osCommerce v2.2 MS1.

Not only was there a CVS update for those exploits, but osCommerce v2.2 MS2 was released on 7/27/2003 and came integrated with all of the exploit fixes.

osCommerce IS a shopping cart. It can only run your bank books for you if you install the "Run Your Bank Books" contribution. :)

-R

openXS
06-09-2004, 06:23 AM
X-Cart (If You wanna spend some money)

OsCommerce (If you want it free)

nybble
06-09-2004, 06:23 AM
<mock>
There was exploits in Windows from a long time ago, but none in the last few days, it must be safe & secure!
</mock>