保誠-保戶業務員媒合平台
[UPDATE] 解決弱點掃描Use of hard-coded cryptographic key問題, 須把key參數移動到設定檔
修改1個檔案
5 ■■■■ 已變更過的檔案
pamapi/src/main/java/com/pollex/pam/web/rest/EServiceResource.java 5 ●●●● 修補檔 | 檢視 | 原始 | 究查 | 歷程
pamapi/src/main/java/com/pollex/pam/web/rest/EServiceResource.java
@@ -47,6 +47,9 @@
    @Autowired
    ConsultantService consultantService;
    @Autowired
    AesUtil aesUtil;
    @AuditLoggingInject(type = CONSULTANT_LOGIN)
    @PostMapping("/authenticate/{imgCode}")
    public ResponseEntity<UserJWTController.JWTToken> authorize(
@@ -55,7 +58,7 @@
            @PathVariable String imgCode) throws Exception{
        
        
        String paswword = AesUtil.aesDecode(eServiceLoginVM.getPassword());
        String paswword = aesUtil.aesDecode(eServiceLoginVM.getPassword());
        if(!StringUtils.hasText(paswword)) {
            throw new OtpLoginFailException("密碼解密失敗");
        }