in reply to Simple Email Script
In particular, this combination of lines:
means that I can pass a newline-embedded string in the firstname parameter, and get a remote spam-sender or denial-of-service annoyer, courtesy of your script.$firstname=param('firstname'); ... print MAIL "From: $from ($firstname)\n";
Please. CGI is not for casual users.
-- Randal L. Schwartz, Perl hacker
|
|---|