From: Richard E. <re...@ya...> - 2003-08-12 15:32:18
|
In mailfilter.crm from the 2003-08-07-bugfix-alpha tarball, this snippet appears before the classification section of mailfilter.crm: # George's Circuit Breaker - if the mail has already been processed # by CRM114, then send it directly to output, without further # processing. { match / CRM114 / alter (:classifier_reason:) / This mail seems to have already been processed by CRM114. / alter (:pR:) / pR: 999.99 / goto /:looks_good:/ } Please correct me if I'm wrong, but wouldn't this snippet allow spammers to bypass mailfilter.crm entirely by simply including in their email's the word "CRM114"? __________________________________ Do you Yahoo!? Yahoo! SiteBuilder - Free, easy-to-use web site design software http://sitebuilder.yahoo.com |