[KVE-2019-0436 취약점] 수정
This commit is contained in:
@ -18,6 +18,10 @@ check_admin_token();
|
|||||||
// input vars 체크
|
// input vars 체크
|
||||||
check_input_vars();
|
check_input_vars();
|
||||||
|
|
||||||
|
$ca_id = isset($ca_id) ? preg_replace('/[^0-9a-z]/i', '', $ca_id) : '';
|
||||||
|
$ca_id2 = isset($ca_id2) ? preg_replace('/[^0-9a-z]/i', '', $ca_id2) : '';
|
||||||
|
$ca_id3 = isset($ca_id3) ? preg_replace('/[^0-9a-z]/i', '', $ca_id3) : '';
|
||||||
|
|
||||||
// 파일정보
|
// 파일정보
|
||||||
if($w == "u") {
|
if($w == "u") {
|
||||||
$sql = " select it_img1, it_img2, it_img3, it_img4, it_img5, it_img6, it_img7, it_img8, it_img9, it_img10
|
$sql = " select it_img1, it_img2, it_img3, it_img4, it_img5, it_img6, it_img7, it_img8, it_img9, it_img10
|
||||||
|
|||||||
Reference in New Issue
Block a user