MT Comment Forms Used for Spam?
I glanced through the MT Support Forums and didn't see anything in regards to this, but I didn't have a whole lot of time to look.
Here's what's happening: Every couple weeks, I'll get a few comments that do this type of thing:
In the author field: "email@example.comTo: firstname.lastname@example.orgFrom: email@example.comSubject: kvlP(C87BA01E,author)ZOl"
In the e-mail address field: "firstname.lastname@example.orgTo: email@example.comFrom: firstname.lastname@example.orgSubject:"
In the URL Field: "http:// email@example.comFrom: firstname.lastname@example.orgSubject: aw(C87BA01E,url)OY4QK1FA2lmq5DIVMRq28RS0KB Ed WPJEfnH3l7M06xz9."
In the comment field: "body"
Herein lies the problem: When I get my e-mail notification for comments, I notice that the "To:" field not only has my e-mail address, but "email@example.com". They come out looking like this:
A new comment has been posted on your blog UtterlyBoring.com, on entrySo I don't know what else they could be using this for, but I could see this getting exploited.
#1602 (Want a really long e-mail address?).
IP Address: 22.214.171.124
Anybody else run into this? I've posted this on the MT forums, but feel free to comment here as well.