search

Home  >  Q&A  >  body text

php - Pseudo-static injection, what does the * sign at the end of the SQL mean?

stop 2017-06-21 15:12:09
SQL injection point:
http://xxxxxxxxxxxxxx/index.php/Home/Gallery/gallery/cid/6
Pseudo-static injection, just add an * sign at the end of the SQL

The security center reported this problem to me. What is the cause and how to fix it? Thank you
thinkphp3.2.3

巴扎黑巴扎黑2706 days ago762

reply all(1)I'll reply

  • 过去多啦不再A梦

    过去多啦不再A梦2017-06-30 09:55:55

    Where is the injection in your question? ? ?

    reply
    0
  • Cancelreply