SQL Injection 취약점 수정

This commit is contained in:
chicpro
2014-12-05 17:13:10 +09:00
parent b608efa5da
commit fe35a8c782
2 changed files with 2 additions and 0 deletions

View File

@ -55,6 +55,7 @@ if(is_file($skin_file)) {
$faq_list = array();
$stx = trim($stx);
$sql_search = '';
if($stx) {
$sql_search = " and ( INSTR(fa_subject, '$stx') > 0 or INSTR(fa_content, '$stx') > 0 ) ";