成都公司:成都市成華區(qū)建設(shè)南路160號1層9號
重慶公司:重慶市江北區(qū)紅旗河溝華創(chuàng)商務(wù)大廈18樓
當(dāng)前位置:工程項目OA系統(tǒng) > 泛普各地 > 江西OA系統(tǒng) > 南昌OA系統(tǒng) > 南昌網(wǎng)站建設(shè)公司
ECshop屏蔽SQL提示具體操作
- function ErrorMsg($message = '', $sql = '')
- {
- if ($message)
- {
- echo "<b>ECSHOP info</b>: $messagenn<br /><br />";
- //print('<a href="http://faq.comsenz.com/?type=mysql&dberrno=2003&dberror=Can%27t%20connect%20to%20MySQL%20server%20on" target="_blank">http://faq.comsenz.com/</a>');
- }
- else
- {
- echo "<b>MySQL server error report:";
- print_r($this->error_message);
- //echo "<br /><br /><a href='http://faq.comsenz.com/?type=mysql&dberrno=" . $this->error_message[3]['errno'] . "&dberror=" . urlencode($this->error_message[2]['error']) . "' target='_blank'>http://faq.comsenz.com/</a>";
- }
- exit;
- }
修改為
- function ErrorMsg($message = '', $sql = '')
- {
- if ($message)
- {
- //echo "<b>ECSHOP info</b>: $messagenn<br /><br />";
- //print('<a href="http://faq.comsenz.com/?type=mysql&dberrno=2003&dberror=Can%27t%20connect%20to%20MySQL%20server%20on" target="_blank">http://faq.comsenz.com/</a>');
- }
- else
- {
- //echo "<b>MySQL server error report:";
- //print_r($this->error_message);
- //echo "<br /><br /><a href='http://faq.comsenz.com/?type=mysql&dberrno=" . $this->error_message[3]['errno'] . "&dberror=" . urlencode($this->error_message[2]['error']) . "' target='_blank'>http://faq.comsenz.com/</a>";
- }
- exit;
- }
把所有的錯誤輸出屏蔽 這樣很方便的就解決了注入問題

