From 414b954b926ee5e7e6dec39b503292dcda8fd19a Mon Sep 17 00:00:00 2001 From: chicpro Date: Fri, 18 Jul 2014 09:36:57 +0900 Subject: [PATCH] =?UTF-8?q?=EA=B8=80=EC=A0=9C=EB=AA=A9=20=EB=AC=B8?= =?UTF-8?q?=EC=9E=90=EC=97=B4=20=EC=9E=90=EB=A5=B4=EA=B8=B0=20=EC=98=A4?= =?UTF-8?q?=EB=A5=98=EB=A5=BC=20=EC=9D=B4=EC=9A=A9=ED=95=9C=20sql=20inject?= =?UTF-8?q?ion=20=EB=B0=A9=EC=A7=80?= MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit --- bbs/write_update.php | 1 + 1 file changed, 1 insertion(+) diff --git a/bbs/write_update.php b/bbs/write_update.php index e8beab91b..ced4dbff6 100644 --- a/bbs/write_update.php +++ b/bbs/write_update.php @@ -10,6 +10,7 @@ $msg = array(); $wr_subject = ''; if (isset($_POST['wr_subject'])) { $wr_subject = substr(trim($_POST['wr_subject']),0,255); + $wr_subject = preg_replace("#[\\\]+$#", "", $wr_subject); } if ($wr_subject == '') { $msg[] = '제목을 입력하세요.';