php - Pseudo-static injection, what does the * sign at the end of the SQL mean?
巴扎黑
巴扎黑 2017-06-30 09:53:55
0
1
760

stop 2017-06-21 15:12:09
SQL injection point:
http://xxxxxxxxxxxxxx/index.php/Home/Gallery/gallery/cid/6
Pseudo-static injection, just add an * sign at the end of the SQL

The security center reported this problem to me. What is the cause and how to fix it? Thank you
thinkphp3.2.3

巴扎黑
巴扎黑

reply all(1)
过去多啦不再A梦

Where is the injection in your question? ? ?

Latest Downloads
More>
Web Effects
Website Source Code
Website Materials
Front End Template