添加数据接口越权及代码调试

This commit is contained in:
haozq 2024-12-13 11:12:35 +08:00
parent 40acf7919e
commit def21b0194
9 changed files with 13 additions and 14 deletions

View File

@ -37,7 +37,7 @@ layui.use(['layer', 'form', 'element'], function () {
headers: { headers: {
"encrypt": sm3(JSON.stringify(data.field)) "encrypt": sm3(JSON.stringify(data.field))
}, },
url: dataUrl + 'system/userManage/updatePwd', url: dataUrl + 'system/sys/userManage/updatePwd',
data: data.field, data: data.field,
async: true, async: true,
success: function (data) { success: function (data) {

View File

@ -38,7 +38,7 @@ layui.use(['layer', 'form', 'element'], function(){
headers: { headers: {
"encrypt": sm3(JSON.stringify(data.field)) "encrypt": sm3(JSON.stringify(data.field))
}, },
url: dataUrl + 'system/userManage/insertUser', url: dataUrl + 'system/sys/userManage/insertUser',
data: data.field, data: data.field,
async : true, async : true,
success : function(data) { success : function(data) {

View File

@ -15,7 +15,7 @@ function setForm(userId) {
headers: { headers: {
"encrypt": sm3(JSON.stringify(objParam)) "encrypt": sm3(JSON.stringify(objParam))
}, },
url: dataUrl + 'system/userManage/getUserDetail', url: dataUrl + 'system/sys/userManage/getUserDetail',
data: objParam, data: objParam,
async: true, async: true,
success: function (data) { success: function (data) {

View File

@ -37,7 +37,7 @@ layui.use(['layer', 'form', 'element'], function () {
headers: { headers: {
"encrypt": sm3(JSON.stringify(data.field)) "encrypt": sm3(JSON.stringify(data.field))
}, },
url: dataUrl + 'system/userManage/updateUser', url: dataUrl + 'system/sys/userManage/updateUser',
data: data.field, data: data.field,
async: true, async: true,
success: function (data) { success: function (data) {
@ -153,7 +153,7 @@ function setForm(userId) {
headers: { headers: {
"encrypt": sm3(JSON.stringify(objParam)) "encrypt": sm3(JSON.stringify(objParam))
}, },
url: dataUrl + 'system/userManage/getUserDetail', url: dataUrl + 'system/sys/userManage/getUserDetail',
data: objParam, data: objParam,
async: true, async: true,
success: function (data) { success: function (data) {

View File

@ -152,7 +152,7 @@ function pages(pageNum, pageSize, typeNum) {
headers: { headers: {
"encrypt": sm3(JSON.stringify(params)) "encrypt": sm3(JSON.stringify(params))
}, },
url: dataUrl + 'system/userManage/getUserList', url: dataUrl + 'system/sys/userManage/getUserList',
data: params, data: params,
type: 'POST', type: 'POST',
async: false, async: false,
@ -272,7 +272,7 @@ function delData(userId) {
headers: { headers: {
"encrypt": sm3(JSON.stringify(objParams)) "encrypt": sm3(JSON.stringify(objParams))
}, },
url: dataUrl + 'system/userManage/deleteUser', url: dataUrl + 'system/sys/userManage/deleteUser',
data: objParams, data: objParams,
async: true, async: true,
success: function (data) { success: function (data) {

View File

@ -226,7 +226,7 @@ function delData(userId) {
headers: { headers: {
"encrypt": sm3(JSON.stringify(objParams)) "encrypt": sm3(JSON.stringify(objParams))
}, },
url: dataUrl + 'system/userManage/deleteUser', url: dataUrl + 'system/sys/userManage/deleteUser',
data: objParams, data: objParams,
async: true, async: true,
success: function (data) { success: function (data) {

View File

@ -26,8 +26,6 @@ layui.use(['layer', 'form', 'element'], function () {
// 默认首页 // 默认首页
// $('#iframeMain').attr('src', '../compreDisplay/compreDisplay.html'); // $('#iframeMain').attr('src', '../compreDisplay/compreDisplay.html');
var user = JSON.parse((us)); var user = JSON.parse((us));
console.log(00000000000000)
console.log(sm2Decrypt('04f48cfeaff8529b74fe86f0e8fab11ac2d5b54497ca51f72ed8e7da2abd3ff653b53478695ac1c42385c04a723e7b77d773cecd6b59999d7ea7301e17d19336a711262ddfe245ae57b81c4ff5386b8e10ae018bd4ad41ccd8f8ad1b9061bde9fc31ace5170da882849bf1d0327d1fdc00f8a49ce32af5efd46e3c52d2d4ee58d041f8009f1832e43142e4f88e26c12b1ba7ba46f077'))
getWzXx(user.orgId); getWzXx(user.orgId);
window.setTimeout(function () { window.setTimeout(function () {
getWzXx(user.orgId); getWzXx(user.orgId);
@ -336,7 +334,8 @@ function getWzXx(orgId) {
$.ajax({ $.ajax({
url: dataUrl + 'proteam/pot/home/getWzXx' , url: dataUrl + 'proteam/pot/home/getWzXx' ,
headers: { headers: {
"encrypt": sm3(JSON.stringify({ orgId: orgId })) "encrypt": sm3(JSON.stringify({ orgId: orgId })),
'Authorization': localStorage.getItem("tokens")
}, },
data: { data: {
orgId: orgId, orgId: orgId,

View File

@ -1,7 +1,7 @@
//只允许包含静态资源-不包含方法 //系统请求路径 //只允许包含静态资源-不包含方法 //系统请求路径
let dataUrl = "http://127.0.0.1:18080/basfs/"; let dataUrl = "http://127.0.0.1:18080/basfs/";
//重定向登录页面 //重定向登录页面
let login_url="http://sgwpdm.ah.sgcc.com.cn/ahsfs/login.html"; let login_url="http://127.0.0.1:8848/jjsp_web/login.html";
//重定向登录页面 //重定向登录页面
let login_url_new = "http://sgwpdm.ah.sgcc.com.cn/ahsfs/logins.html"; let login_url_new = "http://sgwpdm.ah.sgcc.com.cn/ahsfs/logins.html";
//分析决策中心 //分析决策中心

View File

@ -3,9 +3,9 @@ function success(data,textStatus, jqXhr){
if(data.code==201){ if(data.code==201){
console.log(data.msg) console.log(data.msg)
}else if(data.code==401){ }else if(data.code==401){
window.location.href = login_url; top.location.href = login_url;
} }
// console.log("数据调用成功") console.log("数据调用成功")
} }
function error(event, xhr, settings, er){ function error(event, xhr, settings, er){