[horde] To: and From: formatting problem

Chuck Hagenbuch chuck at horde.org
Wed Mar 1 08:39:42 PST 2006


Quoting Chris <bsd at 1command.com>:

> The previous version didn't do this.

IMP has done this since version 1.x.

> It would appear that this could easily be a security risk - even  
> greater than that of the last version. As it isn't properly handling  
> input on the To: and/ or From:. It shouldn't be possible to place  
> potential operators on these lines. As it provides the ability to  
> create scripts that can cause undesired manipulation.

What on earth are you talking about?

-chuck

-- 
"we are plastered to the windshield of the bus that is time." - Chris


More information about the horde mailing list