我的 IBM appscan 结果显示 139 个漏洞端口侦听器命令注入。我正在使用 PHP codeigniter 框架。
Parameter: status
Risk(s): It is possible to run remote commands on the web server. This usually means complete compromise of the server and its
contents
Fix: Set the "uri" attribute of the "domain" entity in the clientaccesspolicy.xml file to include specific domain names instead of any
domain.
我该如何解决这个问题?