Hi
I found some bug in dspam.cgi,lie in line 221,origin code as below:
$FORM{'signatureID'} = quotemeta($signature);
&ProcessFalsePositive();
it is a bug , quotemeta will be called in ProcessFalsePositive function
again ,
so if some signature like 7,478ef4d4150741031177895,after one quotemeta call
,it will become 7\,478ef4d4150741031177895,
after another quotemeta call ,it will become 7\\,478ef4d4150741031177895,the
result is that it can't match any signature any more!
regards!
stevenlee
