4 Replies Latest reply on Jan 29, 2013 8:21 AM by GKiew

    Hidden form fields problem. How can I make it more secure.

    GKiew Level 1

      The payment page on our website is passing credit card information into a conformation page as form variables.  The credit card company requires us to pass all of these form variable to their site for validation.

      we pass these form variable using hidden field such as this : <cfinput type="hidden" name="CCNo" value="#Form.CCNo#">

      The problem is, when I did view source from my browser, I could see all of the credit card information. I'm sure this need to be changed immediately but

      I can't think of a way to make this transaction more secure.

       

      I seems that he credit card company wanted us to pass all of these information as form variables.  Is there ways to make passing form variable secure, where users can't see the values from view source??

       

      Please help