Mick Szucs wrote: > Hi There, > > My company is beginning to deploy spam-assassin for users who want > it. One issue that has come up is that messages being generated by a > mailto script on our company Website get tagged with - > > BODY: Broken CGI script message (3.9 points) > > Unfortunately the scores page doesn't explain in any great detail what > it is that appears to be broken about the message. Is there some way > to get specific information about what constitutes Broken CGI in this > case? > The message appears to be coming from a CGI script (FormMail, IIRC) that has a security hole allowing third parties to use it for untraceable spam. Look in the rules for how this is matching; the way to find these is to look for the message ("Broken CGI script message") in 20_body_tests.txt, and then observe the test name (BUGGY_CGI) has the following test:
body BUGGY_CGI /Below is the result of your feedback form/ -- http://www.pricegrabber.com "We are smarter individually." -- Larry Niven _______________________________________________ Spamassassin-talk mailing list [EMAIL PROTECTED] https://lists.sourceforge.net/lists/listinfo/spamassassin-talk