in reply to Re^10: CGI-mailer script
in thread CGI-mailer script

The Javascript you have there relies on a CGI program that has a horribly insecure interface, as it appears that it allows the user of a web page to insert any e-mail and any text they went into a mail - which is of course ideal for the spammers, no one in their right mind is goin to alter a perfectly good, working and secure FormMail program so that it becomes a spam relay simply because you don't want to change some javascript.

What I recommend is that you make another request to nms-cgi-support@lists.sourceforge.net including the code that you posted earlier and explain clearly that you would like to know how to interface that Javascript with the NMS FormMail, someone may be generous enough to give you the whole solution but we can give you the pointers.

/J\

Replies are listed 'Best First'.
Re^12: CGI-mailer script
by santander (Acolyte) on Aug 19, 2004 at 14:06 UTC
    Please specify what unsecure features you see in that javascript? The purpose of script(as author explained)is log visitors statistic(domain, browser,title, url, etc)to get statistic data as much as possible.

      It's not the javascript itself, it is the interface it expects of the CGI program. It expects that the CGI program will allow sending of e-mail from a GET request with the recipient of the e-mail and the entire content specified in the URL.

      /J\