November 27, 2003

Another way to spam using Movable Type

From the no-good-deeds go unpunished dept.

I was reading Mike McBride's blog this evening when I saw his link to the girlie matters detailing a new way to spam via Movable Type (the blog software myself and countless others use).

The exploit apparently uses the ability to email a blog entry link to another person from your mailserver. The particular Movable Type file in question is called mt-send-entry.cgi. According to the following discussion on the Movable Type support board, one can either edit the file using a quick fix (for those of you who utilize the feature) or delete the file altogether from your Web server.

I deleted the file, mostly because I never even thought of implementing the feature in the first place. I urge my fellow MT users to do the same.

Posted by joy at November 27, 2003 10:48 PM | TrackBack
Comments

I'm going to delete mine too. My MT features like that one go unused hehe. xox

Posted by: dianna at November 28, 2003 11:51 AM

Yeah, if I want to email someone a link to an entry, I just - get this - send them email.

Posted by: fluffy at November 28, 2003 01:01 PM

Oh cool, I'm glad I stumbled upon your site (via Mandarin Design) and saw this article. I just deleted that file, which I never use anyways. Thanks!

Posted by: Trinity at November 30, 2003 12:17 PM

This is one of the most interesting sites I have ever seen

Posted by: Mark at January 26, 2004 02:15 PM

I can see, that many of my old friends likes this page very much. Me too !!

Posted by: Oscar at January 27, 2004 08:49 AM