View Issue Details
ID | Project | Category | View Status | Date Submitted | Last Update |
---|---|---|---|---|---|
0002177 | Composr | core_configuration | public | 2016-02-09 20:21 | 2016-07-04 20:22 |
Reporter | Chris Graham | Assigned To | Chris Graham | ||
Severity | Feature-request | ||||
Status | resolved | Resolution | fixed | ||
Product Version | |||||
Fixed in Version | |||||
Summary | 0002177: Make auto-acknowledge emails optional | ||||
Description | The auto-emails (lang strings YOUR_MESSAGE_WAS_SENT_SUBJECT and YOUR_MESSAGE_WAS_SENT_BODY) are sent out when you post a contact request. However, if you disable CAPTCHA for these forms, these emails can effectively be used as an open relay - as you can put in a fraudulent from address, and the system sends out an email to that address. | ||||
Tags | Type: Security | ||||
Time estimation (hours) | 1 | ||||
Sponsorship open | |||||
Date Modified | Username | Field | Change |
---|---|---|---|
2016-04-28 01:32 | Chris Graham | Summary | Made auto-acknowledge emails optional => Make auto-acknowledge emails optional |
2016-07-04 20:22 | Chris Graham | Status | non-assigned => resolved |
2016-07-04 20:22 | Chris Graham | Resolution | open => fixed |
2016-07-04 20:22 | Chris Graham | Assigned To | => Chris Graham |