[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

[Full-disclosure] no-ip.com interesting way to handle newsletter options



Hello.

The newsletter no-ip.com sends to his customers has an unsubscribe
link like this:

http://www.no-ip.com/unsubscribe.php?email=user@xxxxxxxxxxx

which means everybody can change your subscription options, just by
knowing the email address you used to register.

Let's see if this email helps them to disable the non privacy-aware
PHP script more quickly.

Thanks.

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/