Community Forums
Connect with us on LinkedIn
+ Reply to Thread
Results 1 to 3 of 3
  1. #1
    Member
    Join Date
    Jan 2004
    Posts
    134

    Default Formmail nobody@

    I use forms to mail in several pages hosted in my server, the forms use formmail.cgi
    Some days ago I've began to receive emails from those forms sent by nobody@host.myserver.com

    The body begins with the word POSTDATA, and all the fields are filled with readable text and %xx codes.

    I have enabled suexec and I configured WHM to avoid nobody sending emails, but these solutions doesn`t function.

    The next solution I aplied was config a blacklist in SpamAsassin and an email filter to discard this messages.
    But I wonder if this spammer could use my formmail to send spam, and I would like to know if this is a hole in formmail, and how to fix it.

    Any help?

  2. #2
    cPanel Partner NOC cPanel Partner NOC Badge AndyReed's Avatar
    Join Date
    May 2004
    Location
    Minneapolis, MN
    Posts
    2,223

    Default

    I am not sure what version are you using, but in general, Formmail is one of the most insecure scripts. You'll have to get a different, more secure, formmail script. Better yet, use a completely different script.
    Andy Reed
    RHCE and CCNA
    ServerTune.com

  3. #3
    Member
    Join Date
    Jan 2004
    Posts
    134

    Default

    I use formmail that is in CPanel, the FormMail Version 3.12c1. I thought it was secure, but perhaps I need to change my mind about it

    Thanks

Similar Threads & Tags
Similar threads

  1. FormMail-clone.cgi [was: Security spam hole in cgi-sys/formmail.pl re-write]
    By cpanelnick in forum cPanel and WHM Discussions
    Replies: 175
    Last Post: 04-05-2011, 04:00 AM
  2. FormMail
    By latpanel in forum cPanel and WHM Discussions
    Replies: 1
    Last Post: 03-13-2007, 10:33 PM
  3. formmail
    By brunobrown1409 in forum cPanel and WHM Discussions
    Replies: 1
    Last Post: 11-17-2006, 04:22 AM
  4. mod_security blocking formmail... and formmail SPAM
    By wilfried in forum cPanel and WHM Discussions
    Replies: 2
    Last Post: 06-09-2006, 12:29 AM
  5. FormMail
    By Nico in forum cPanel and WHM Discussions
    Replies: 4
    Last Post: 12-05-2001, 04:29 PM
Linkedin       Facebook       Twitter       RSS       Flickr       YouTube