From: <no...@so...> - 2002-09-24 19:24:13
|
Feature Requests item #614000, was opened at 2002-09-24 19:24 You can respond by visiting: https://sourceforge.net/tracker/?func=detail&atid=425772&aid=614000&group_id=39625 Category: None Group: None Status: Open Priority: 5 Submitted By: Lochmatter Thomas (lochmatter) Assigned to: Nobody/Anonymous (nobody) Summary: Better referer check in formmail Initial Comment: For a "secure" referer check, the formmail script should download the original html file with the form and compare some of the submitted information, namely the receiver email address. As it is widely known, the referer can be easily changed by a hacker and a simple referer check only makes it a bit more difficult to misuse the formmail script, but still possible. Could you implement this check in your script? - Thomas Lochmatter ---------------------------------------------------------------------- You can respond by visiting: https://sourceforge.net/tracker/?func=detail&atid=425772&aid=614000&group_id=39625 |