You are here: Re: Preventing spammers from using mail script « All PHP « IT news, forums, messages
Re: Preventing spammers from using mail script

Posted by affiliateian on 11/21/06 20:51

J.O. Aho wrote:
> It's not true, if you allow users to enter a FROM field which you then
> directly without any filtering do assign to the mail() functions fourth input
> variable, then they can use CC and BCC to send the mail to whom ever they want.

Hey JO, let me do more reading on your link:
http://www.php.net/manual/en/function.mail.php

As for injecting CC and BCC headers, can I manually set my headers in
the php script with no addresses in the cc field. Would this help?

$headers .= 'Cc:' . "\r\n";

Basically, trying to tell the script NOT to cc ot bcc anyone even those
spammers could be trying to push this content through. Does that make
sense?

 

Navigation:

[Reply to this message]


Удаленная работа для программистов  •  Как заработать на Google AdSense  •  England, UK  •  статьи на английском  •  PHP MySQL CMS Apache Oscommerce  •  Online Business Knowledge Base  •  DVD MP3 AVI MP4 players codecs conversion help
Home  •  Search  •  Site Map  •  Set as Homepage  •  Add to Favourites

Copyright © 2005-2006 Powered by Custom PHP Programming

Сайт изготовлен в Студии Валентина Петручека
изготовление и поддержка веб-сайтов, разработка программного обеспечения, поисковая оптимизация