Ticket #3684 (closed defect: worksforme)
Susceptible to spammy redirects
| Reported by: | anonymous | Owned by: | cboos |
|---|---|---|---|
| Priority: | high | Milestone: | |
| Component: | ticket system | Version: | 0.9.6 |
| Severity: | major | Keywords: | |
| Cc: |
Description
Spammers upload attachments, then spamvertize them (typically comment spamming on blogs etc) with ?format=raw behind the URL. Then the redirects work.
Spammy redirects using holes in software is the new spam technique, and needs to be plugged wherever the hole is used.
Details here: http://spamhuntress.com/2006/09/07/trac-ticket-system-susceptible-to-redirects/
Attachments
Change History
Note: See
TracTickets for help on using
tickets.


