Grazie delle risposte!
ho fatto una serie di modifiche tra ieri ed oggi per vedere se la situazione cambiava.. ma niente!
Vi spiego brevemente cos'ho fatto...
1) inserito il codice CAPTCHA
2) controllo come suggerito delle variabili tramite GET
Codice PHP:
session_start();
// controllo $_GET
if(!empty($_GET)){ unset($_GET); }
// controllo captcha
$number = $_POST['Codice'];
if(md5($number) == $_SESSION['image_random_value']){
$mail_header="From: [email]pippo@pippo.it[/email]\n";
$mail_header.="Reply-to: [email]pippo@pippo.it[/email]\n";
$messaggio="testo del messaggio";
$oggetto="Prova di invio";
mail("$destinatario", $oggetto , $messaggio, $mail_header)."\n";
header("Location:index.php?msg=ok");
}else{
header("Location:index.php?msg=error");
}
oggi mi è arrivata una mail così:
Codice PHP:
From: [email]pippo@pippo.it[/email]
Reply-To: [email]pippo@pippo.it[/email]
To: "sarcasm6909@antiquariatoceramiche.com Content-Transfer-Encoding": 7bit.Content-Type:text/plain.Subject:Experts.expect.this.issue.to.double.in.value.before.the.weekend.bcc:gags46hac@yahoo.com, [email]mes110@cox.net[/email], [email]chnkev04@yahoo.com[/email], [email]christine028@webtv.net[/email], [email]whood@bigcenter.com[/email], [email]vlynch@cflh.org[/email], [email]blt@stx.rr.com[/email], [email]john_hoogerhyde@yahoo.com[/email], [email]anuknowthis@juno.com[/email], [email]mamajerri2@nc.rr.com[/email], [email]terryairhart@yahoo.com[/email], [email]lighttreader@yahoo.com[/email], [email]rivera1225@hotmail.com[/email], [email]m87240@netzero.net[/email], [email]whitesparks@sbcglobal.com[/email], [email]kmnehl@yahoo.com[/email], [email]ihoffert@yahoo.com[/email], [email]ctatum@kw.com[/email], [email]kyliestribe@bigpond.com[/email], [email]lbonilla@pacerglobal.com[/email], [email]jdgilbert72@hotmail.com[/email], [email]sam1288@address.com[/email], [email]aagvirgo78@yahoo.com[/email], [email]bengolea@bellsouth.net[/email], [email]hollyt@sturgeonins.com[/email], [email]b_aramon@yahoo.com[/email], [email]coachbrad@zbrd.com[/email], [email]meemarpar@earthlink.net[/email], hphillips@4ù
mmmm che dite??