Red-hot MT security alert
Saturday November 22, 2003 – 9:36 pmDirty rotten spammers! Now they’ve found a way to hack into Movable Type. It involves the mt-send-entry script, which allows people to send copies of a blog post to anyone they want. Three guesses what they’re doing with it! Of course they’re using it to send their filthy spam to whoever they want, right from your server. So if you’re using MT, go into your cgi bin and delete that thing right now until they post a fix! If you’re using that feature, get rid of it for now. It’s not safe. If you’re not using the feature, you won’t break anything by deleting the file.







November 26th, 2003 at 2:40 am
Movable Type just posted a fix for this…
http://www.movabletype.org/news/2003_11.shtml#000873
…but you’re still better off just deleting the file if you’re not using that feature.