>- see footer for list info -<

Ah! I haven't seen Russ's posting which you referred to.

Thanks for the link though.

paddy





Damien Gallagher <[EMAIL PROTECTED]>
13/09/2005 13:52
Please respond to damien

 
        To:     [EMAIL PROTECTED]
        cc:     Coldfusion Development <[email protected]>
        Subject:        Re: [CF-Dev] spammers using your contact forms


Cheers Paddy, I've seen that before, but that's not the problem I was 
talking about in my question. It's rather that they can use your contact 
forms to actually use the your host's mailserver to email their spam:

http://www.anders.com/cms/75/Crack.Attempt/Spam.Relay


[EMAIL PROTECTED] wrote:

>
> You might find this useful for encoding email addresses for this very 
> reason
>
> http://www.metaprog.com/samples/encoder.htm
>
> paddy
>
> ----------------------------
> Paddy McKay
> Technical Manager, Scotland
> Scottish Property Network Limited
>
> T: +44 (0)141 561 7300
> F: +44 (0)141 561 7319
>
> www.scottishproperty.co.uk
>
>
>
>                *Damien Gallagher <[EMAIL PROTECTED]>*
> Sent by: [EMAIL PROTECTED]
>
> 13/09/2005 13:33
> Please respond to damien; Please respond to Coldfusion Development
>
> 
>         To:        Coldfusion Development <[email protected]>
>         cc: 
>         Subject:        [CF-Dev] spammers using your contact forms
>
>
>
>
> >- see footer for list info -<
> Just seen Russ's security announcement about spammers being able to use
> your contact forms. Had a look round the net and found the solution
> seems to be to strip out chr(10) and chr(13) from any field that will
> appear in the message header (eg. reply-to). Can anyone see anything
> wrong with the code below?
>
> #ReplaceList(form.email,"#Chr(13)#,#Chr(10)#", "")#
>
> Thanks, Damien
>
> _______________________________________________
>
> For details on ALL mailing lists and for joining or leaving lists, go 
> to http://list.cfdeveloper.co.uk/mailman/listinfo
>
> --
> CFDeveloper Sponsors:-
> >- Hosting provided by www.cfmxhosting.co.uk -<
> >- Forum provided by www.fusetalk.com -<
> >- DHTML Menus provided by www.APYCOM.com -<
> >- Lists hosted by www.Gradwell.com -<
> >- CFdeveloper is run by Russ Michaels, feel free to volunteer your 
> help -<
>
>
>
> This email is from Scottish Property Network Limited.
> The E-mail and any files transmitted with it are
> confidential and intended solely for the use of the
> individual or entity to whom they are addressed.
>
> Any unauthorised dissemination or copying of this
> e-mail, and any use or disclosure of any attachments
> contained in it, is strictly prohibited and may be
> illegal. If you have received the E-mail in error
> please notify us on [EMAIL PROTECTED] or telephone
> 0141 5617300. Any views expressed by an individual
> within this E-mail do not necessarily reflect the
> views of the firm.
>
> Our general contact details are;
> Scottish Property Network Limited
> 26 New Street
> Paisley
> PA1 1YB
>
> Telephone 0141 561 7300
> Fax 0141 561 7319
>

-- 

*Damien Gallagher*
e.  [EMAIL PROTECTED]
m. 07812 043 315
f.   020 8488 8538







This email is from Scottish Property Network Limited. 
The E-mail and any files transmitted with it are 
confidential and intended solely for the use of the 
individual or entity to whom they are addressed.

Any unauthorised dissemination or copying of this 
e-mail, and any use or disclosure of any attachments 
contained in it, is strictly prohibited and may be 
illegal. If you have received the E-mail in error 
please notify us on [EMAIL PROTECTED] or telephone 
0141 5617300. Any views expressed by an individual 
within this E-mail do not necessarily reflect the 
views of the firm.

Our general contact details are;
Scottish Property Network Limited
26 New Street
Paisley
PA1 1YB

Telephone 0141 561 7300
Fax 0141 561 7319
_______________________________________________

For details on ALL mailing lists and for joining or leaving lists, go to 
http://list.cfdeveloper.co.uk/mailman/listinfo

--
CFDeveloper Sponsors:-
>- Hosting provided by www.cfmxhosting.co.uk -<
>- Forum provided by www.fusetalk.com -<
>- DHTML Menus provided by www.APYCOM.com -<
>- Lists hosted by www.Gradwell.com -<
>- CFdeveloper is run by Russ Michaels, feel free to volunteer your help -<

Reply via email to