Problem with form post hijack?

Discuss phpwcms here, please do not post support requests, bug reports, or feature requests! Non-phpwcms questions, discussion goes in General Chat!
Post Reply
Marchel
Posts: 4
Joined: Tue 27. Sep 2005, 15:32
Location: Madrid

Problem with form post hijack?

Post by Marchel »

Hi all,

I have a question regarding contact forms.

Currently there is a form post hijack.

Info can be found at http://www.anders.com/projects/sysadmin ... Hijacking/

I was wondering if phpwcms is vulnerable to this and if so, what we can do to fix it. Anyone has a clue?

I am currently coming up with a solution for other forms we host using php, by stripping out the \r and \n of the form headers.

Cheers,
Marchel.
usta
Posts: 146
Joined: Thu 18. Aug 2005, 19:17

Post by usta »

Marchel
Posts: 4
Joined: Tue 27. Sep 2005, 15:32
Location: Madrid

Post by Marchel »

Usta,

I don't know what you mean...
usta
Posts: 146
Joined: Thu 18. Aug 2005, 19:17

Post by usta »

methought, a ssl-secure login might help...
User avatar
Oliver Georgi
Site Admin
Posts: 9909
Joined: Fri 3. Oct 2003, 22:22
Contact:

Post by Oliver Georgi »

this has nothing to do with bug ;-)
Oliver Georgi | phpwcms Developer | GitHub | LinkedIn | Систрон
Post Reply