email injection – help!
-
Is there a new email injection vulnerability? A new batch of spam recently started flowing through our server, and not getting caught by our filters. Some email log analysis yielded two data points:
– the spam was originating from our web server process
– the spam had from: containing the domain name of one of our wordpress sites
Pretty obvious conclusion: somebody found a way to inject email through or wordpress installationLooks like this is still happening after upgrading from 3.3 to 3.3.3
Is this a known vulnerability? Any suggestions?
Thanks!
Viewing 4 replies - 1 through 4 (of 4 total)
Viewing 4 replies - 1 through 4 (of 4 total)
- The topic ‘email injection – help!’ is closed to new replies.