diff --git a/config/func.inc.php b/config/func.inc.php index e79eda1d2..41fa07e24 100644 --- a/config/func.inc.php +++ b/config/func.inc.php @@ -459,16 +459,16 @@ **/ function removeHackTag($content) { // iframe 제거 - $content = preg_replace("!!is", '', $content); + $content = preg_replace("!!is", '<iframe$1</iframe>', $content); // script code 제거 - $content = preg_replace("!!is", '', $content); + $content = preg_replace("!!is", '<script$1</script>', $content); // meta 태그 제거 - $content = preg_replace("!!is", '', $content); + $content = preg_replace("!!is", '<meta$1>', $content); // style 태그 제거 - $content = preg_replace("!!is", '', $content); + $content = preg_replace("!!is", '<style$1<style>', $content); // XSS 사용을 위한 이벤트 제거 $content = preg_replace_callback("!<([a-z]+)(.*?)>!is", removeJSEvent, $content);