From 9ac9e01a51460c5cf25306f62cc1eaadb6fc9d07 Mon Sep 17 00:00:00 2001 From: kagla Date: Thu, 7 Apr 2022 15:43:33 +0900 Subject: [PATCH] =?UTF-8?q?[KVE-2022-0184]=20XSS=20=EB=B0=8F=20SQLInjectio?= =?UTF-8?q?n=20=EC=B7=A8=EC=95=BD=EC=A0=90=20=ED=95=B4=EA=B2=B0=EC=9D=84?= =?UTF-8?q?=20=EC=9C=84=ED=95=B4=20=EC=82=AC=EC=9A=A9=ED=95=98=EC=A7=80=20?= =?UTF-8?q?=EC=95=8A=EA=B3=A0=20=EC=9E=88=EB=8D=98=20"=EC=BD=94=EB=93=9C?= =?UTF-8?q?=20=EC=A4=91=EB=B3=B5=EA=B2=80=EC=82=AC"=20=EA=B8=B0=EB=8A=A5?= =?UTF-8?q?=20=EC=A0=9C=EA=B1=B0?= MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit --- adm/shop_admin/categoryform.php | 2 -- adm/shop_admin/codedupcheck.php | 24 ------------------------ adm/shop_admin/configform.php | 7 ------- adm/shop_admin/itemform.php | 33 --------------------------------- 4 files changed, 66 deletions(-) delete mode 100644 adm/shop_admin/codedupcheck.php diff --git a/adm/shop_admin/categoryform.php b/adm/shop_admin/categoryform.php index 8a133d515..1950ec2c3 100644 --- a/adm/shop_admin/categoryform.php +++ b/adm/shop_admin/categoryform.php @@ -157,7 +157,6 @@ else {
- @@ -184,7 +183,6 @@ else { - diff --git a/adm/shop_admin/codedupcheck.php b/adm/shop_admin/codedupcheck.php deleted file mode 100644 index 3436c7797..000000000 --- a/adm/shop_admin/codedupcheck.php +++ /dev/null @@ -1,24 +0,0 @@ - - - - - - > 사용 - - diff --git a/adm/shop_admin/itemform.php b/adm/shop_admin/itemform.php index eea31a8cf..9afd81fe4 100644 --- a/adm/shop_admin/itemform.php +++ b/adm/shop_admin/itemform.php @@ -210,7 +210,6 @@ if(!sql_query(" select it_skin from {$g5['g5_shop_item_table']} limit 1", false) - @@ -333,11 +332,8 @@ if(!sql_query(" select it_skin from {$g5['g5_shop_item_table']} limit 1", false) 상품코드 - - 직접 상품코드를 입력할 수도 있습니다.\n상품코드는 영문자, 숫자, - 만 입력 가능합니다."); ?> - @@ -1782,35 +1778,6 @@ $(function() { }); -function codedupcheck(id) -{ - if (!id) { - alert('상품코드를 입력하십시오.'); - f.it_id.focus(); - return; - } - - var it_id = id.replace(/[A-Za-z0-9\-_]/g, ""); - if(it_id.length > 0) { - alert("상품코드는 영문자, 숫자, -, _ 만 사용할 수 있습니다."); - return false; - } - - $.post( - "./codedupcheck.php", - { it_id: id }, - function(data) { - if(data.name) { - alert("코드 '"+data.code+"' 는 '".data.name+"' (으)로 이미 등록되어 있으므로\n\n사용하실 수 없습니다."); - return false; - } else { - alert("'"+data.code+"' 은(는) 등록된 코드가 없으므로 사용하실 수 있습니다."); - document.fitemform.codedup.value = ''; - } - }, "json" - ); -} - function fitemformcheck(f) { if (!f.ca_id.value) {