把fsockopen函數(shù)替換成pfsockopen 函數(shù),因?yàn)閜fsockopen可保持keep-alive連接,使黑客無法持續(xù)性的攻擊。
涉及到的dedecms文件有如下:
dedecms5.6有如下:
include/dedehttpdown.class.php
include/dedecollection.func.php:
include/mail.class.php
dede/module_main.php
dede/api_ucenter.php
dedecms5.7有如下:
include/dedehttpdown.class.php
include/sphinxclient.class.php
include/dedecollection.func.php:
include/mail.class.php
ask/data/scores.inc.php:
dede/module_main.php
dede/api_ucenter.php
plus/bshare.php
找到這些文件把其中的fsockopen替換成pfsockopen就可以了