One of my members received an e-mail from a non-member on my forum today. I wonder how that could happen. I have Snitz Forums 2000 Version 3.4.06. How could this be possible?
I receive copies of all mails through the system and this is the first incident. My latest MODS are: Gatekeeper and share Topic MOD.
there is no way I know of to do this, could you maybe post te full email header here for us to look at (it is the bit that shows all the routing info for the email
I have removed my e-mail with the xxx below otherwise this is part of the header:
------Quote-------- From: "madosa" <wmavdou@yahoo.com> To: "faderabraham" <xxxx@xxxxxx.dk> Reply-To: wmavdou@yahoo.com Date: Wed, 31 Mar 2010 10:52:57 +0200 Message-ID: <20100331-10525727-3354@xxxxx.dk> MIME-Version: 1.0 X-Virus-Scanned: ClamAV X-Spam-Status: Yes, score=5.5 X-Spam-Score: 55 X-Spam-Bar: +++++ X-Spam-Report: Spam detection software, running on the system "xxxxxxx.dk", has identified this incoming email as possible spam. The original message has been attached to this so you can view it (if it isn't spam) or label similar future email. If you have any questions, see the administrator of that system for details. Content preview: Hello faderabraham You received the following message from: madosa (wmavdou@yahoo.com) At: http://www.gambia.dk/forums/ [...] Content analysis details: (5.5 points, 5.0 required) pts rule name description ---- ---------------------- -------------------------------------------------- 1.1 DNS_FROM_OPENWHOIS RBL: Envelope sender listed in bl.open-whois.org. 3.2 FH_DATE_PAST_20XX The date is grossly in the future. 2.3 FORGED_YAHOO_RCVD 'From' yahoo.com does not match 'Received' headers -1.1 BAYES_05 BODY: Bayesian spam probability is 1 to 5% [score: 0.0266] X-Spam-Flag: YES Subject: ***SPAM*** Sent From Bantaba in Cyberspace by madosa- ADMINISTRATOR COPY
Hello faderabraham
You received the following message from: madosa (wmavdou@yahoo.com) --end quote-------------------
The person who sent the mail is not a member of my forum. Let me know if I can send you the complete header to your mail.
You do not have your forum setup correctly, ALL visitors are allowed to send members email. in the admin options under 'E-mail server configuration' you need to turn on 'require logon for sending mail'
Thank you! This is true and I have now turned it on.
I had thought Gatekeeper MOD would allow Non-members to send Topic To a Friend but would prevent sending mail to Members. This was the reason I turned it off but I opened for this security risk.