diff --git a/zyplayer-doc-manage/src/main/java/com/zyplayer/doc/manage/web/LoginController.java b/zyplayer-doc-manage/src/main/java/com/zyplayer/doc/manage/web/LoginController.java index dcb300cf..8f7b4d01 100644 --- a/zyplayer-doc-manage/src/main/java/com/zyplayer/doc/manage/web/LoginController.java +++ b/zyplayer-doc-manage/src/main/java/com/zyplayer/doc/manage/web/LoginController.java @@ -62,7 +62,8 @@ public class LoginController { } } else { if (userInfo == null) { - return DocResponseJson.warn("用户名'" + username + "'没有找到!"); + // 不应该明确告诉是没用户还是密码错误,防止密码暴力破解 + return DocResponseJson.warn("用户名或密码错误"); } String pwdMd5 = DigestUtils.md5DigestAsHex(password.getBytes()); if (!Objects.equals(userInfo.getPassword(), pwdMd5)) { diff --git a/zyplayer-doc-ui/wiki-ui/src/routes.js b/zyplayer-doc-ui/wiki-ui/src/routes.js index 01279cad..988d76b1 100644 --- a/zyplayer-doc-ui/wiki-ui/src/routes.js +++ b/zyplayer-doc-ui/wiki-ui/src/routes.js @@ -56,7 +56,7 @@ let routes = [ children: [ { path: '/page/share/mobile/view', - name: 'WIKI-开放文档', + name: 'WIKI-开放文档-APP', component: shareMobileView, }, ],