PW又出xss漏洞续集,大家快去补补吧
$path = str_replace(array("<",">","'","\"",";"), array("%3c","%3e","%27","%22","%3b"),$path);修改成$path = str_replace(array("<",">","'","\"",";"," "), array("%3c","%3e","%27","%22","%3b","%20"),$path);
修改文件: require/bbscode.php
页:
[1]