Re: query string passing woes........ help... please....




<rcoan@xxxxxxxxxxxxxxxxxx> wrote in message
news:1172686432.967755.6850@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxx
| >>You form as it stands can
| >>be used to spam anyone.
|
| Actually I don't really see a way of it being used to send spam to
| anyone really. Unless they actually key in the query string. The
| email address that's being passed via the query string is from a
| database of email addresses that are location specific. In other
| words these people are expecting the emails and for there to be some
| junk mail possibly. So I'm not too worried about the spam issue as of
| right now but I will keep an eye out for it. Thanks.

you're kidding, right?

i could drop anyone's email address onto your query string in such rapid
successesion that your domain (and/or isp) could be liable for a class
action lawsuit...regardless of what email address your db intended to
send/receive it. further, i could add cc, bcc and other directives to your
email that your script is sending...again, your db addresses are of NO
concern. 'as of right now', give me your url and i'll spread your site's
ass-cheecks wide...THAT would be the 'eye' you're keeping out for it. ;^)

i'd also work on your validation. it needs to be FAR more graceful than it
is now. i'm sure most people would like to know why something went wrong
rather than the mere fact that something did go wrong.


.



Relevant Pages

  • Re: query string passing woes........ help... please....
    ... |>>be used to spam anyone. ... Unless they actually key in the query string. ... ass-cheecks wide...THAT would be the 'eye' you're keeping out for it. ... i'd also work on your validation. ...
    (alt.php)
  • Re: query string passing woes........ help... please....
    ... Unless they actually key in the query string. ... So I'm not too worried about the spam issue as of ... |> i'd also work on your validation. ... it needs to be FAR more graceful than ...
    (alt.php)
  • Re: query string passing woes........ help... please....
    ... Actually I don't really see a way of it being used to send spam to ... Unless they actually key in the query string. ... as there isn't any real from argument in the mail function, ... the same no header injection was attempted, otherwise it's a try to spam). ...
    (alt.php)
  • Re: query string passing woes........ help... please....
    ... Actually I don't really see a way of it being used to send spam to ... Unless they actually key in the query string. ... junk mail possibly. ... right now but I will keep an eye out for it. ...
    (alt.php)
  • Re: Unique Freeware Website
    ... spam is in the eye of the beholder. ... Don't you think it's utterly stupid to download or just get linked to ... anti-virus prog, a good active realtime defense prog...(a good security ...
    (alt.computer.security)