Yep, the main exploitation would happen by using the underlying PHP
script.
Google will help you with sorting the PHP:
http://www.google.com/search?client=safarirls=enq=stop+spammers+php
+scriptsie=UTF-8oe=UTF-8
Also, the php online manual reference for 'mail' has a number of
comments
http://www.securephpwiki.com/index.php/Email_Injection
-Oorspronkelijk bericht-
Van: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED] Namens Dan Efergan
Verzonden: maandag 29 mei 2006 16:27
Aan: Flashcoders mailing list
Onderwerp: Re: [Flashcoders] security issues with php mail from
2 matches
Mail list logo