宣布時候:2019-10-10 宣布者:admin 閱讀次數: 來歷:
data/session 保管不勝利,緣由是目次不寫入權限(權限777),利用FTP毗連東西或進入在線文件辦理都可點竄;
處置二:
NENGGOUDAXIAODIAOKAOZHENGMA,XIANGXICAOZONGTILIYIXIA,FENWEILIANGBULAITINGZHI:
1、翻開 dede/login.php 找到:
if($validate=='' || $validate != $svali)
替代為:
if( false)
2、ZAIMOBANdede/templets/login.htmLIQUDIAOYIXIAKAOZHENGMADEXIANGXIHTMLDAIMA:
<li><span>考證碼:</span>
<input name="validate" type="text" id="vdcode" style='width:50px;text-transform:uppercase;' class="text" />
<img id="vdimgck" src="../include/vdimgck.php" alt="看不清?點擊改換" align="absmiddle" style="cursor:pointer" onclick="this.src=this.src '?'" />